note 21918 added to faq.installation

From: Date: Fri, 31 May 2002 06:46:33 +0000
Subject: note 21918 added to faq.installation
Groups: php.notes 
Request: Send a blank email to php-notes+get-31261@lists.php.net to get a copy of this message
Several users that tried to install PHP4 under Windows with the servers Apache, PWS or Xitami receives this message when trying to open a php script file: "Security Alert! PHP CGI cannot be accessed directly. This PHP CGI binary was compiled with force-cgi-redirect enabled. This means that a page will only be served up if the REDIRECT_STATUS CGI variable is set. This variable is set, for example, by Apache's Action directive redirect. You may disable this restriction by recompiling the PHP binary with the --disable-force-cgi-redirect switch. If you do this and you have your PHP CGI binary accessible somewhere in your web tree, people will be able to circumvent .htaccess security by loading files through the PHP parser. A good way around this is to define doc_root in your php.ini file to something other than your top-level DOCUMENT_ROOT. This way you can separate the part of your web space which uses PHP from the normal part using .htaccess security. If you do not have any .htaccess restrictions anywhere on your site you can leave doc_root undefined. If you are running IIS, you may safely set cgi.force_redirect=0 in php.ini." I warned it to the PHP-DOC list and nobody knew how to help me. But once somebody from there said me to try to set the Apache Server not to run PHP as a script, or something like that. I just know that the unique lines that I had to put in the httpd.conf of Apache was: AddType application/x-httpd-php .php ScriptAlias /php/ "c:/arquivos de programas/php/" AddType application/x-httpd-php .php Action application/x-httpd-php "/php/php.exe" And it worked! But I couldn't resolve this problem with PWS or Xitami. And now I want to run it with Xitami. Can anybody help me? If so, please send me an e-mail: thalescm@uol.com.br Thanks a lot... -- http://www.php.net/manual/en/faq.installation.php http://master.php.net/manage/user-notes.php?action=edit+21918 http://master.php.net/manage/user-notes.php?action=delete+21918 http://master.php.net/manage/user-notes.php?action=reject+21918

« previous php.notes (#31261) next »