Req #53256 [Opn]: Protect .ini files by default.
| From: | cataphract@php.net | Date: | Sun, 07 Nov 2010 21:31:12 +0000 |
| Subject: | Req #53256 [Opn]: Protect .ini files by default. | ||
| References: | 1 | Groups: | php.bugs |
| Request: | Send a blank email to php-bugs+get-155831@lists.php.net to get a copy of this message | ||
Edit report at http://bugs.php.net/bug.php?id=53256&edit=1
ID: 53256
Updated by: cataphract@php.net
Reported by: geoffreyfishing at users dot sourceforge dot net
Summary: Protect .ini files by default.
Status: Open
Type: Feature/Change Request
Package: PHP options/info functions
Operating System: All
PHP Version: 5.3.3
Block user comment: N
New Comment:
I don't see the usefulness. Why would the webserver be configured to
read the ini files as PHP files in the first place?... Am I missing
something?
Previous Comments:
------------------------------------------------------------------------
[2010-11-07 19:39:13] geoffreyfishing at users dot sourceforge dot net
Description:
------------
With the parse_ini_file() function, many people are coming up with
different ways
to protect ini files (need proof? check the comments for that function).
The idea
here is to register the .ini file with the PHP parser, and then have the
parser
just return like a blank screen or something.
------------------------------------------------------------------------
--
Edit this bug report at http://bugs.php.net/bug.php?id=53256&edit=1