note 20334 added to security.filesystem
| From: | tim at correctclick dot com | Date: | Sat, 30 Mar 2002 21:48:00 +0000 |
| Subject: | note 20334 added to security.filesystem | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-28416@lists.php.net to get a copy of this message | ||
One more thing --
whenever you connect to a database with a password hard coded into your script, make sure you put
the script off of your web document tree. Put the script somewhere where apache won't serve
documents, and then include/require this file in your other scripts. That way, if the server ever
gets misconfigured, it won't serve your PHP scripts with passwords, etc. as plain text for all
to see.
-Tim
--
http://www.php.net/manual/en/security.filesystem.php
http://master.php.net/manage/user-notes.php?action=edit+20334
http://master.php.net/manage/user-notes.php?action=delete+20334
http://master.php.net/manage/user-notes.php?action=reject+20334