RE: [PHP] Subdirectory security
| From: | Lawrence dot Sheed at dfait-maeci dot gc dot ca | Date: | Tue, 26 Sep 2000 08:31:47 +0000 |
| Subject: | RE: [PHP] Subdirectory security | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-17550@lists.php.net to get a copy of this message | ||
Why don't you chmod the directory so they have no read permissions from php?
Maybe if you told us what you're trying to do, we could suggest something
better.
If you're trying to do subdomains and want to restrict users to their
subdomain only,
then you could create a directory for that user to use, set apache to use
that directory for that domain, and give them permissions to read that
directory only.
Cheers,
Lawrence.
-----Original Message-----
From: Andrés [mailto:andres@redys.com]
Sent: September 26, 2000 04:09 PM
To: php-general@lists.php.net
Subject: Re: [PHP] Subdirectory security
I know how I can do it with Apache, but what I want to stop is that someone
can use PHP to access one of the files under a directory where he don't have
access using a web browser.
> > Hello.
> >
> > Is there any way to stop someone from accessing a file under the
doc_root?
> > As there's a directive to define the document root, is there anything
> > similar to stop PHP from acessing a whole subdirectory under that
document
> > root?
> >
> > Thanks.
> >
>
> If you are using apache, just deny access to that subdirectory.
>
> <Directory "/path/to/wherever">
> Order deny, allow
> Deny from all
> </Directory>
--
PHP General Mailing List (http://www.php.net/)
To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
For additional commands, e-mail: php-general-help@lists.php.net
To contact the list administrators, e-mail: php-list-admin@lists.php.net