Re: php4 safe mode, another question
| From: | Richard Lynch | Date: | Sat, 09 Dec 2000 04:26:27 +0000 |
| Subject: | Re: php4 safe mode, another question | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-29456@lists.php.net to get a copy of this message | ||
> Is it possible to use all features of safe mode, but without
> the restriction of not beeing able to access files belonging to
> another user? This restriction prevents any PHP script from
I think not, unless you want to alter the PHP source code and compile your
own.
You may want to consider using PHP as a CGI with suExec (http://apache.org)
instead -- at some loss of performance.
Another option would be to switch from Apache to fhttpd which I think would
let you run PHP as a module under a different user ID -- Or wait for Apache
2.0 which is rumored to have that feature...
> What is btw the reason, why safe mode restricts access to
> files belonging to the same owner as the calling script itself?
Large-scale ISPs install one PHP whole-sale on all their virtual hosts --
Thus the owner of the PHP files is the client they want to keep in their own
sandbox.