RE: [PHP] Keeping "Secrets" in PHP Files

From: Date: Mon, 01 Jul 2002 14:00:04 +0000
Subject: RE: [PHP] Keeping "Secrets" in PHP Files
Groups: php.general 
Request: Send a blank email to php-general+get-104657@lists.php.net to get a copy of this message
Easy, http://www.zend.com/store/products/zend-encoder.php Dan -----Original Message----- From: Erik Price [mailto:pricee@hhbrown.com] Sent: Monday, July 01, 2002 7:29 AM To: Lazor, Ed Cc: php-general@lists.php.net Subject: Re: [PHP] Keeping "Secrets" in PHP Files On Friday, June 28, 2002, at 06:14 PM, Lazor, Ed wrote: > The hosting provider could probably implement a solution... Alter the > FTP > configuration to automatically set the group permission to that of the > web > server when you transfer files. You wouldn't need to be in the group. > You're the owner and can modify your own files. World Read access > would be > unnecessary. Someone pointed out last week that a maleficant can write a script that reads other files' data [and does something evil with that], since it will be executed as the web server user and the web server user can read all those files. Erik ---- Erik Price Web Developer Temp Media Lab, H.H. Brown pricee@hhbrown.com -- PHP General Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php

« previous php.general (#104657) next »