RE: [PHP-DB] PHP security
| From: | s.budd | Date: | Wed, 21 Feb 2001 09:54:39 +0000 |
| Subject: | RE: [PHP-DB] PHP security | ||
| Groups: | php.db | ||
| Request: | Send a blank email to php-db+get-6821@lists.php.net to get a copy of this message | ||
moreover , even if they cant see the text of the page, Your password is
going over the internet in plain text.
-----Original Message-----
From: Don [mailto:don@lclcan.com]
Sent: Tuesday, February 20, 2001 7:24 PM
To: php-db list
Subject: [PHP-DB] PHP security
I am writing aome PHP scripts to connect to a MySQL database. In order
to connect, I have found the following documented code:
$dbLink = mysql_connect("localhost", "my_user", "my_password")
Here, the password is plain text. This does not seem very secure to
me. What is to prevent someone using a program like Frontpage to
download my web and discover my password?
--
PHP Database Mailing List (http://www.php.net/)
To unsubscribe, e-mail: php-db-unsubscribe@lists.php.net
For additional commands, e-mail: php-db-help@lists.php.net
To contact the list administrators, e-mail: php-list-admin@lists.php.net