note 21910 added to security.errors
| From: | publicmail at macfreek dot nl | Date: | Fri, 31 May 2002 00:07:42 +0000 |
| Subject: | note 21910 added to security.errors | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-31249@lists.php.net to get a copy of this message | ||
On a production server, you do not want to display errors to clients. A method to prevent this is,
to set report_errors(E_NONE);
as described above.
A better option is not to disable error reporting, but just not showing them, and let them log to a
file.
For example, set in your php.ini file:
register_globals off
log_errors on
display_errors off
error_log /var/log/php_errors
Be sure to check this file once in a while. I recommend that any server maintainer has a weekly or
daily check of log files. You don't need to read them all. "grep error /var/log/*"
would be a could start!
--
http://www.php.net/manual/en/security.errors.php
http://master.php.net/manage/user-notes.php?action=edit+21910
http://master.php.net/manage/user-notes.php?action=delete+21910
http://master.php.net/manage/user-notes.php?action=reject+21910