Posted by adyda on 09/25/05 01:57
"David Dorward" <dorward@yahoo.com> wrote in message
news:dh4hog$od3$1$830fa17d@news.demon.co.uk...
> You would be better off working from the other direction. Decide what tags
> (and what attributes on those tags) that you want to *allow* and drop
> everything else. Aside from anything else, its proof against any future
> extensions (official or (more likely) otherwise) to HTML that may be
> introduced.
Yes, this maybe a best solution, but so probablythere are several more tags
and attributes that I need to enable...
Navigation:
[Reply to this message]
|