Re: How do you keep your scripts secure?

From: Date: Thu, 15 Mar 2001 23:27:21 +0000
Subject: Re: How do you keep your scripts secure?
References: 1  Groups: php.general 
Request: Send a blank email to php-general+get-44163@lists.php.net to get a copy of this message
<snip> > that will protect against people typing the url in their broswer to get the > code. i'm not sure what you're talking about here...php code is parsed on the server then the html is sent to the browser....only way to get code is if there's a .phps copy of the file accessible on the web > Let's say I have some include file somewhere. Do you mean that if someone > knew the name of the include file, they could type that path and file name > and the code would display? if someone knew the name of your include file, and it was under the webserver root (for instance, the same folder) then yes, its like any other file......you can get around this by changing your php.ini include_path variables and putting the files there, outside the webserver directory jack

« previous php.general (#44163) next »