Req #64865 [Com]: Search for .user.ini files from script dir up to CONTEXT_DOCUMENT_ROOT

From: Date: Thu, 20 Feb 2020 15:14:28 +0000
Subject: Req #64865 [Com]: Search for .user.ini files from script dir up to CONTEXT_DOCUMENT_ROOT
References: 1  Groups: php.bugs 
Request: Send a blank email to php-bugs+get-225656@lists.php.net to get a copy of this message
Edit report at https://bugs.php.net/bug.php?id=64865&edit=1

 ID:                 64865
 Comment by:         iggyvolz at gmail dot com
 Reported by:        php-bugs at sievers dot dialup dot fu-berlin dot de
 Summary:            Search for .user.ini files from script dir up to
                     CONTEXT_DOCUMENT_ROOT
 Status:             Closed
 Type:               Feature/Change Request
 Package:            CGI/CLI related
 PHP Version:        5.5Git-2013-05-17 (Git)
 Block user comment: N
 Private report:     N

 New Comment:

Is there any way this could be backported to 7.4?


Previous Comments:
------------------------------------------------------------------------
[2020-01-24 14:34:20] nikic@php.net

Automatic comment on behalf of wbender@nmi.com
Revision: http://git.php.net/?p=php-src.git;a=commit;h=98bfad738ad2734dfba5733323f7ba733daf3ec3
Log: Fix bug #64865: Use CONTEXT_DOCUMENT_ROOT for scanning dir tree

------------------------------------------------------------------------
[2020-01-03 15:53:25] willypbender83 at gmail dot com

The following pull request has been associated:

Patch Name: Use CONTEXT_DOCUMENT_ROOT for scanning dir tree
On GitHub:  https://github.com/php/php-src/pull/5051
Patch:      https://github.com/php/php-src/pull/5051.patch

------------------------------------------------------------------------
[2013-05-17 08:55:08] php-bugs at sievers dot dialup dot fu-berlin dot de

Description:
------------
Currently PHP-CGI searches for .user.ini files in the script directory and all parent directories up
to DOCUMENT_ROOT.

See: http://php.net/manual/en/configuration.file.per-user.php

If Apache web servers use the UserDir module the php scripts lie out of the DOCUMENT_ROOT, which
causes PHP-CGI to search only in the script directory for .user.ini files. This is inconvenient for
users, who have to copy their .user.ini files to all sub-directories in order to apply their
settings.

Since Apache 2.3.13 there is an additional CONTEXT_DOCUMENT_ROOT variable, which is set by
mod_userdir and probably mod_alias accordingly.

See http://stackoverflow.com/questions/12129433/what-is-servercontext-prefix/12129649#12129649

PHP-CGI could use this variable (if set) to search for .user.ini files. It could search from the
script directory up to CONTEXT_DOCUMENT_ROOT. If the variable is not set, PHP-CGI should use
DOCUMENT_ROOT as it has before.

Even other web servers (e.g. Apache 2.2) can profit from this change, since it's easy to set
CONTEXT_DOCUMENT_ROOT variable via a RewriteRule directive.

Apache http's suexec support the CONTEXT_DOCUMENT_ROOT variable too:

  *) suexec: Add environment variables CONTEXT_DOCUMENT_ROOT, CONTEXT_PREFIX,
     REDIRECT_ERROR_NOTES, REDIRECT_SCRIPT_FILENAME, REQUEST_SCHEME to the
     whitelist in suexec. PR 51499. [Graham Laverty <graham reg ca>,
     Stefan Fritsch]

(http://mirror.serversupportforum.de/apache//httpd/CHANGES_2.4)

Jan Sievers



------------------------------------------------------------------------



--
Edit this bug report at https://bugs.php.net/bug.php?id=64865&edit=1


Thread (5 messages)

« previous php.bugs (#225656) next »