note 18529 deleted from function.fopen by sander
| From: | sander@php.net | Date: | Sun, 07 Apr 2002 11:16:23 +0000 |
| Subject: | note 18529 deleted from function.fopen by sander | ||
| References: | 1 | Groups: | php.notes |
| Request: | Send a blank email to php-notes+get-28836@lists.php.net to get a copy of this message | ||
Why not adding a support to the fopen_wrappers to use the DocumentRoot or the VirtualDocumentRoot
(mod_vhost_alias) of the Apache settings as the open_base_directory. This would make the whole
security thing a lot easier, doesn't it ?
Every User should only be allowed to open the Files stored in his Directory - this should be the
most common way of doing it.
What do you think ?