Re: Re: The secrecy of PHP code
| From: | Ben-Nes Michael | Date: | Tue, 14 Aug 2001 08:09:42 +0000 |
| Subject: | Re: Re: The secrecy of PHP code | ||
| References: | 1 2 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-62592@lists.php.net to get a copy of this message | ||
its a problem because the code is not compiled into binary file, and then
every one who can browse the directory ( using ftp for example ) can view
your code.
To prevent this ( as root ) I chroot every user that log to ftp to another
directory so they cant go out and browse the /etc /php-directories or what
ever.
The problem still stays if you open php to system commands like `echo
/etc/passwd` or using system() ....
--------------------------
Canaan Surfing Ltd.
Internet Service Providers
Ben-Nes Michael - Manager
Tel: 972-4-6991122
http://sites.canaan.co.il
--------------------------
----- Original Message -----
From: "Soeren Nielsen" <news@n-crypt.dk>
To: <php-general@lists.php.net>
Sent: Tuesday, August 14, 2001 10:56 AM
Subject: [PHP] Re: The secrecy of PHP code
>
> "James Shaker" <james@vartek-corp.com> wrote in message
> news:OHEHIDODEJCGOFHHLLPOGEJGCIAA.james@vartek-corp.com...
> >
> > Greetings,
> > [snip] calculations and I code them in PHP
> > for use on a website are they safe from being
> > viewed or taken?
>
> If your php-code is on a web-server which gives access to other than you
> they can read your code. An example could be other people being hosted
> on the same server..
>
> Regards,
> Sרren
>
>
>
>
> --
> PHP General Mailing List (http://www.php.net/)
> To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net
> For additional commands, e-mail: php-general-help@lists.php.net
> To contact the list administrators, e-mail: php-list-admin@lists.php.net
>
>