RE: [PHP] Keeping "Secrets" in PHP Files
| From: | Jonathan Rosenberg | Date: | Sat, 29 Jun 2002 14:44:05 +0000 |
| Subject: | RE: [PHP] Keeping "Secrets" in PHP Files | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-104487@lists.php.net to get a copy of this message | ||
-----Original Message-----
> From: Peter J. Schoenster [mailto:peter@schoenster.com]
> Sent: Saturday, June 29, 2002 1:27 AM
> To: php-general@lists.php.net
> Subject: RE: [PHP] Keeping "Secrets" in PHP Files
> Yeah, you are assuming an environment that does
> not necessarily have to be. Why must one Apache
> server serve all users? Simply because that's
> the easiest way to do right out of the box?
> You have 2 scenarios as I see it:
> 1. Your own box -- no troubles other than the
> obvious
> 2. Virtual Server - One Apache for all users ...
> seems insecure
> 3. Virtual Server - One Apache for EACH user ...
> seems quite secure and experience confirms.
Not to be picky but you said there werwe 2 scenarios :-)
In any case, your #3 above works as long as each server runs in
its own unique group, which is shares with the customer.
> Peter
--
JR