Re: Re: securing directory tree and allowing PHP to work

From: Date: Tue, 20 Aug 2002 14:35:01 +0000
Subject: Re: Re: securing directory tree and allowing PHP to work
References: 1 2  Groups: php.db 
Request: Send a blank email to php-db+get-21249@lists.php.net to get a copy of this message
On Tuesday 20 August 2002 16:30, bmw wrote: > >>"Bmw" <robert.white@online.fr> wrote in message > >>news:20020820074726.85003.qmail@pb1.pair.com... > >> I am trying to find out how I can secure the directory tree of my PHP > >> scripts from the HTTP server without preventing access to my PHP scripts > >> once in session. Right now, if I type the URL of a subdirectory of my > > site, > > >> I get the index of all the files and directories. > >> > >> Ex: > >> > >> http://domaine/index.html has DB access user login > >> and password for my > >> session authentication to enter into my scripts and run the program. If you goto http://domaine/ does that show http://domaine/index.html ? > >> If I type http://domaine/subfolder/ I can see all the > >> PHP code I want > >> without logging into my site. How can I protect the server from doing If so, simply put in an empty index.html into the directories where you do not want people to the direcrtory listing. -- Jason Wong -> Gremlins Associates -> www.gremlins.com.hk Open Source Software Systems Integrators * Web Design & Hosting * Internet & Intranet Applications Development * /* ... and furthermore ... I don't like your trousers. */

« previous php.db (#21249) next »