RE: [PHP] Hiding the source!
| From: | James Atkinson | Date: | Thu, 17 Aug 2000 17:23:11 +0000 |
| Subject: | RE: [PHP] Hiding the source! | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-12296@lists.php.net to get a copy of this message | ||
It depends, if all your include files end in .inc, and you don't parse
.inc's though the PHP parser. Then someone types in
http://www.yourdomain.com/includes/db_login.inc
they get your database
login and password...and whatever else. So that brings up another point
that you should name your include files so they are parsed though the
parser. :)
James Atkinson
-----------------------------------------------------------
James Atkinson 100world
Technical Developer 512-1529 West 6th Avenue
phone: +1-604-266-4490 ext.149 Vancouver, BC, V6J 1R1
fax: +1-604-742-1770 Canada
email: james.atkinson@100world.com http://www.100world.com
+-------------------------------------------------------------+
| This message may contain confidential and/or privileged |
| information. If you are not the addressee or authorized to |
| receive this for the addressee, you must not use, copy, |
| disclose or take any action based on this message or any |
| information herein. If you have received this message in |
| error, please advise the sender immediately by reply e-mail |
| and delete this message. Thank you for your cooperation. |
+-------------------------------------------------------------+
-----Original Message-----
From: Tyler Longren [mailto:tyler.longren@midiowa.net]
Sent: Thursday, August 17, 2000 10:13 AM
To: James Atkinson; PHP
Subject: RE: [PHP] Hiding the source!
How would somebody go about getting your php source off of your web
server
anyway?
--
Tyler Longren
[Web Development]
Premier Visual Services
http://www.pvs2000.com