RE: [PHP] Hiding the source!

From: Date: Thu, 17 Aug 2000 17:23:11 +0000
Subject: RE: [PHP] Hiding the source!
Groups: php.general 
Request: Send a blank email to php-general+get-12296@lists.php.net to get a copy of this message
It depends, if all your include files end in .inc, and you don't parse .inc's though the PHP parser. Then someone types in http://www.yourdomain.com/includes/db_login.inc they get your database login and password...and whatever else. So that brings up another point that you should name your include files so they are parsed though the parser. :) James Atkinson ----------------------------------------------------------- James Atkinson 100world Technical Developer 512-1529 West 6th Avenue phone: +1-604-266-4490 ext.149 Vancouver, BC, V6J 1R1 fax: +1-604-742-1770 Canada email: james.atkinson@100world.com http://www.100world.com +-------------------------------------------------------------+ | This message may contain confidential and/or privileged | | information. If you are not the addressee or authorized to | | receive this for the addressee, you must not use, copy, | | disclose or take any action based on this message or any | | information herein. If you have received this message in | | error, please advise the sender immediately by reply e-mail | | and delete this message. Thank you for your cooperation. | +-------------------------------------------------------------+ -----Original Message----- From: Tyler Longren [mailto:tyler.longren@midiowa.net] Sent: Thursday, August 17, 2000 10:13 AM To: James Atkinson; PHP Subject: RE: [PHP] Hiding the source! How would somebody go about getting your php source off of your web server anyway? -- Tyler Longren [Web Development] Premier Visual Services http://www.pvs2000.com

« previous php.general (#12296) next »