From 0d79a2b519ae9f1d0e29f89bdbae516d5b818452 Mon Sep 17 00:00:00 2001 From: Maurits van Rees Date: Mon, 7 Dec 2015 08:12:25 +0100 Subject: [PATCH] Noted compatibility and point to plone4.csrffixes in the readme. Fixes issue #35. --- README.rst | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/README.rst b/README.rst index 2208c9b..9d727fc 100644 --- a/README.rst +++ b/README.rst @@ -236,3 +236,16 @@ If you are using a proxy cache in front of your site, be aware that you will need to clear the entry for ``++resource++protect.js`` every time you update this package or you will find issues with modals while editing content. + + +Compatibility +============= + +``plone.protect`` version 3 was made for Plone 5. You can use it on +Plone 4 for better protection, but you will need the +``plone4.csrffixes`` hotfix package as well. Otherwise you get +needless warnings or errors. See the `hotfix announcement`_ and the +`hotfix page`_. + +.. _`hotfix announcement`: https://plone.org/products/plone/security/advisories/security-vulnerability-20151006-csrf +.. _`hotfix page`: https://plone.org/products/plone-hotfix/releases/20151006