Re: security
| From: | Gustavo Vieira Goncalves Coelho Rios | Date: | Thu, 22 Feb 2001 06:55:15 +0000 |
| Subject: | Re: security | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-41219@lists.php.net to get a copy of this message | ||
Javier Muniz wrote:
>
> Encode them, or set filesystem permissions in such a way (suggest using
> groups) to allow apache to read files but not other users.
>
> For instance, if your users are all members of the users group, and apache
> runs as nobody, then set your files to be owned by the user with the nobody
> group (chown user:nobody <file>) then set it to be readable by group, but
> not others (chmod 640 <file>).
>
> -jm
>
> -----Original Message-----
> From: Gustavo Vieira Goncalves Coelho Rios [mailto:gustavo@ifour.com.br]
> Sent: Wednesday, February 21, 2001 9:15 PM
> To: php-general@lists.php.net
> Subject: [PHP] security
>
Thanks, but i am considering such an approach! Isn't there any other way
out?
May i consider using php in a shell server environment a stupid thing to
do ? Since security is very critical in such environments!