note 35033 added to security.index
| From: | dsimic at urc dot bl dot ac dot yu | Date: | Sat, 16 Aug 2003 18:10:13 +0000 |
| Subject: | note 35033 added to security.index | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-54424@lists.php.net to get a copy of this message | ||
Why not chroot the whole Apache Web Server (or any other Web Server running under UNIX)?
After that, Apache will run inside chroot jail, limiting by that access to server's filesystem.
For me, that's the first step in the process of securing PHP installations.
Also, for people running Linux, look at www.grsecurity.net (don't take this as a sort of
marketing ;), which is a great kernel security-related patch.
----
Manual Page -- http://www.php.net/manual/en/security.index.php
Edit Note -- http://master.php.net/manage/user-notes.php?action=edit+35033
Delete Note -- http://master.php.net/manage/user-notes.php?action=delete+35033&report=yes
Reject Note -- http://master.php.net/manage/user-notes.php?action=reject+35033&report=yes