note 18529 deleted from function.fopen by sander

From: Date: Sun, 07 Apr 2002 11:16:23 +0000
Subject: note 18529 deleted from function.fopen by sander
References: 1  Groups: php.notes 
Request: Send a blank email to php-notes+get-28836@lists.php.net to get a copy of this message
Why not adding a support to the fopen_wrappers to use the DocumentRoot or the VirtualDocumentRoot (mod_vhost_alias) of the Apache settings as the open_base_directory. This would make the whole security thing a lot easier, doesn't it ? Every User should only be allowed to open the Files stored in his Directory - this should be the most common way of doing it. What do you think ?

« previous php.notes (#28836) next »