[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-users] AW: php4
- Subject: [cobalt-users] AW: php4
- From: "Cedric Haindl" <c.haindl@xxxxxxxxx>
- Date: Fri Feb 9 01:24:23 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
I use include files (.inc) containing the sensitive code and place outside
the webroot.
Practical, if you have code accessing a database for instance. Otherwise
anyone can see your userID and password to the database.
I am not a php-guru, but that worked for me. But beware, I just bought the
"linux hacker's guide" :-). After that I can turn my Cobalt into a fortress
;-).
Regards
Cédric
PS: What means HTH?
> > have a solution for the problem, that if you dont install
> > php with safe_mode anyone is able to read the other sites scripts
> >
> > and if you compile it with safe_mode youre not able to use file_upload
> > thank you
> > andreas
>
> Through telnet anyone can read anyone's scripts anyway :(
> But have you tried overriding the safe mode on default with an .htaccess
> file in the directory where you want to upload?
> Something like:
> php_value safe_mode off
>
> HTH
> Carrie Bartkowiak>
>
-----------------------------------------------------------
Haindl Mediendesign GmbH | Untermueli 11 | 6300 Zug
Tel: +41-41-763 30 85 | Fax:+41-41-763 30 86
ISDN (Leonardo) +41-41-763 30 89 | Mobile: +41-79-630 41 19
Email: cedi@xxxxxxxxx | Internet: http://www.haindl.ch
-----------------------------------------------------------