Re: mysql connect password security
| From: | Dane Morgan | Date: | Sun, 24 Dec 2000 05:06:07 +0000 |
| Subject: | Re: mysql connect password security | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-31740@lists.php.net to get a copy of this message | ||
Thanks for the info... I tried it on a couple other servers and got the
parsed code... So now I know that this is not normal behavior...
Dane
----- Original Message -----
From: "Cynic" <cynic@mail.cz>
To: "Dane Morgan" <danemorgan@qwest.net>; <php-general@lists.php.net>
Sent: Saturday, December 23, 2000 10:09 AM
Subject: Re: [PHP] mysql connect password security
>
> >I discovered that I can right click save as on a php script and get the
unparsed script
>
> Really? Then your webserver's really badly misconfigured, or
> rather malfunctioning. You should be getting resulting HTML
> (or whatever your PHP code produces, for that matter).
>
> At 18:00 23.12. 2000, Dane Morgan wrote the following:
> --------------------------------------------------------------
> >Hi all!
> >
> >Is there any way I can secure my mysql connection password if I do not
have access on my server below the document root? I will be storing all
sensitive data on my site in mysql and it seems that if I can protect this
one password, I'll be pretty secure, but I discovered that I can right click
save as on a php script and get the unparsed script which will trot my
password right out there for Grandma to take a look at. I can't see a way
around this.
> ------end of quote------
>
>
>
> ____________________________________________________________
> Cynic:
>
> A member of a group of ancient Greek philosophers who taught
> that virtue constitutes happiness and that self control is
> the essential part of virtue.
>
> cynic@mail.cz
>
>
>