Re: php on the Command line

From: Date: Mon, 26 Jun 2000 00:04:35 +0000
Subject: Re: php on the Command line
References: 1 2 3 4 5 6 7 8  Groups: php.general 
Request: Send a blank email to php-general+get-3058@lists.php.net to get a copy of this message
Chris Adams wrote: > > > > Don't rely on it for security as it's just not possible to prevent someone > > > from decrypting it. > > > Security should be enforced with tightly restricted account permissions that way even > > > a full > copy of > > > the source won't help. > > > > of course :) > > most of the security will have to be built into the script itself, to > > prevent users from executing commands and whatnot. > > Ah yes, the joys of writing user-proof code that J. Random User can run. Running it through the > webserver really is so much easier... the script to add ftp accounts, and the script to add sub-domains will be accessed by a form in a control panel (created out of php ,of course :) the problem that i cant think of how to get around is that the files that i need to modify are root.root (/etc/proftpd/domain.com and /usr/local/apache/vhost/domain.com) apache is ran with suexec and user httpd,group cust. all the users that have domains are also under the same group ( if there's a better way, please lemme know. ) what i really need is a shell that jails users into their home directory, and doesnt let them read/write/execute anything outside of $HOME, unless i say so.

« previous php.general (#3058) next »