Re: php on the Command line
| From: | Bjorn Sodergren | Date: | Mon, 26 Jun 2000 00:04:35 +0000 |
| Subject: | Re: php on the Command line | ||
| References: | 1 2 3 4 5 6 7 8 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-3058@lists.php.net to get a copy of this message | ||
Chris Adams wrote:
>
> > > Don't rely on it for security as it's just not possible to prevent someone
> > > from decrypting it.
> > > Security should be enforced with tightly restricted account permissions that way even
> > > a full
> copy of
> > > the source won't help.
> >
> > of course :)
> > most of the security will have to be built into the script itself, to
> > prevent users from executing commands and whatnot.
>
> Ah yes, the joys of writing user-proof code that J. Random User can run. Running it through the
> webserver really is so much easier...
the script to add ftp accounts, and the script to add sub-domains will
be accessed by a form in a control panel (created out of php ,of course
:)
the problem that i cant think of how to get around is that the files
that i need to modify are root.root (/etc/proftpd/domain.com and
/usr/local/apache/vhost/domain.com)
apache is ran with suexec and user httpd,group cust.
all the users that have domains are also under the same group
( if there's a better way, please lemme know. )
what i really need is a shell that jails users into their home
directory, and doesnt let them read/write/execute anything outside of
$HOME, unless i say so.