Re: Re: securing directory tree and allowing PHP to work
| From: | Jason Wong | Date: | Tue, 20 Aug 2002 14:35:01 +0000 |
| Subject: | Re: Re: securing directory tree and allowing PHP to work | ||
| References: | 1 2 | Groups: | php.db |
| Request: | Send a blank email to php-db+get-21249@lists.php.net to get a copy of this message | ||
On Tuesday 20 August 2002 16:30, bmw wrote:
> >>"Bmw" <robert.white@online.fr> wrote in message
> >>news:20020820074726.85003.qmail@pb1.pair.com...
> >> I am trying to find out how I can secure the directory tree of my PHP
> >> scripts from the HTTP server without preventing access to my PHP scripts
> >> once in session. Right now, if I type the URL of a subdirectory of my
>
> site,
>
> >> I get the index of all the files and directories.
> >>
> >> Ex:
> >>
> >> http://domaine/index.html has DB access user login
> >> and password for my
> >> session authentication to enter into my scripts and run the program.
If you goto
http://domaine/
does that show
http://domaine/index.html
?
> >> If I type http://domaine/subfolder/ I can see all the
> >> PHP code I want
> >> without logging into my site. How can I protect the server from doing
If so, simply put in an empty index.html into the directories where you do not
want people to the direcrtory listing.
--
Jason Wong -> Gremlins Associates -> www.gremlins.com.hk
Open Source Software Systems Integrators
* Web Design & Hosting * Internet & Intranet Applications Development *
/*
... and furthermore ... I don't like your trousers.
*/