[wp-trac] [WordPress Trac] #20226: Don't advertise pingback URL on resources that don't support pingbacks

WordPress Trac noreply at wordpress.org
Mon Nov 9 13:44:40 UTC 2015


#20226: Don't advertise pingback URL on resources that don't support pingbacks
------------------------------+-----------------------------
 Reporter:  solarissmoke      |       Owner:  wonderboymusic
     Type:  enhancement       |      Status:  closed
 Priority:  normal            |   Milestone:  4.4
Component:  Pings/Trackbacks  |     Version:  3.3
 Severity:  minor             |  Resolution:  fixed
 Keywords:  has-patch         |     Focuses:  template
------------------------------+-----------------------------

Comment (by mark-k):

 This is wrong per #14971 (obviously Nacing is just human and forgets from
 time to time his previous decisions ;) )

 There is no reason not to handle pingbacks for home page and category
 pages. Just because core has no built-in mechanism to display them doesn't
 mean that it will not be handle by a plugin.

 If the point of this is to prevent pingback spam, or using pingback as
 DDOS medium, then I think you will be surprised with how lazy spammers
 are. They know that pingbacks on wordpress should be sent to /xmlrpc.php
 so why should they even bother reading the header or parsing the page when
 all they need is the URL to produce the pingback.

 And if this stays then all core themes should be changed to have the same
 behavior on X-pingback and rel="pingback. Right now on my about week old
 4.4 I see the old behavior on 2014 and 2015

--
Ticket URL: <https://core.trac.wordpress.org/ticket/20226#comment:19>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list