PHP user rights
| From: | Christian Holz | Date: | Thu, 19 Oct 2000 18:58:52 +0000 |
| Subject: | PHP user rights | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-21235@lists.php.net to get a copy of this message | ||
Hi!
We recntly installed PHP4 on our webserver on FreeBSD using Apache 1.3.12
Everything is just work fine BUT
since we do webhosting we found out that mod_php/the apache is running in
group nobody.
That enables every customer to spy and even write into directories they
shouldn't have access to.
Have you guys any hint, how to solve this security problem?
Chris