MHTML (.mht) 文件有哪些安全/隐私问题?
我的客户当前正在使用 MHT 文件来存储浏览网页的离线表示。文件将被保存并稍后在 Internet Explorer 中查看。
查看文件时,我们希望确保原始站点或任何其他站点绝对没有网络活动 - 内容应 100% 离线浏览,并且不应有任何特殊的“本地”以及权限(即访问 file:// 协议等)。如果可能的话,我们希望保持 JS 运行,并且由于离线工作,我们可能会遭受禁用功能的后果。
如果建议更好的解决方案,我们愿意更改查看器甚至文件格式(并转换所有旧的 mht 文件)。
感谢您对此的任何帮助,
乌迪
My customer is currently using MHT files for storing offline representations of browsed web pages. The files are saved and later viewed in Internet Explorer.
When viewing the files we would like to be sure there is absolutely no network activity to the original site or any other site - the content should be browsed 100% offline, and should not have any special "local" privileges as well (i.e. access to file:// protocols etc.). We would like to keep JS running if possible, and we can suffer to consequences of disabled features because of working offline.
We are willing to change the viewer or even the file format (and convert all old mht files as well) if a better solution is suggested.
Thanks for any help on this,
Udi
如果你对这篇内容有疑问,欢迎到本站社区发帖提问 参与讨论,获取更多帮助,或者扫码二维码加入 Web 技术交流群。
绑定邮箱获取回复消息
由于您还没有绑定你的真实邮箱,如果其他用户或者作者回复了您的评论,将不能在第一时间通知您!
发布评论
评论(1)
除非您在 Internet Explorer 中进入离线模式,否则无法保证不会出现任何网络活动。虽然将网页保存到 mht 文件的优点是,用于显示页面的所有信息(包括图像)都存储在一个文件中,而不是多个文件和文件夹中,如果网页内容具有指向其他页面的链接,则可以轻松存档,单击链接将启动网络活动。
一种选择是对 mht 文件进行后处理,并将 url 链接替换为链接的标题。例如,替换
为“导带”。
It is not possible to guarantee that there will be no network activity unless you go to offline mode in Internet explorer. Though the advantage of saving a web page to a mht file is that all the info for displaying the page (including images) are stored in one file instead of several files and folders, making archiving easy, if the web content has links to other pages, clicking on links will initiate network activity.
One option is to post-process the mht file and replace the url links with just the title of the link. For e.g, replacing
with "Conduction band".