note 47848 added to function.tempnam
| From: | soletan at toxa dot de | Date: | Thu, 02 Dec 2004 16:45:40 +0000 |
| Subject: | note 47848 added to function.tempnam | ||
| Groups: | php.notes | ||
| Request: | Send a blank email to php-notes+get-81280@lists.php.net to get a copy of this message | ||
tempnam and SAFE MODE don't generally exclude each other - that link below just shows
frustrating trials to find some meaning in SAFE MODE. However, SAFE MODE is good and I'd
appreciate to find it used in more of contemporarily hyped projects like typo3 or similar, since
many people don't seem to care about security that much, but get enraged by tens and hundreds
of Spam-Mails a day.
Okay, that post from Feb-2004 and the "bug report" is unconditionally true for
multi-hosted PHP environments where several users may have their individual scripts placed on same
server machine. Just take a visit to one of your local webspace-providers, that give space for 5
or less a month.
But the truth get conditional if you gain access to the server all by yourself and may set it up to
have your script's and the web server's GID being same so you can "fall back" to
GID-based SAFE MODE and use tempnam as desired. This is true for several local work,
intranet-related projects in your company etc. Just take a look at how SAFE MODE _really_ works and
why it's rockingly important to use it. You should do when you're developing a company
tool for public access at least.
Never forget to take a moment to think about Unix-filesystem and access rights as well ... even if
you're locally running Windows to have some great IDE or similar (like me :). PHP is available
on both systems, but that's not succeeding to define your work as "portable".
----
Manual Page -- http://www.php.net/manual/en/function.tempnam.php
Edit -- http://master.php.net/manage/user-notes.php?action=edit+47848
Delete -- http://master.php.net/manage/user-notes.php?action=delete+47848&report=yes
Reason: bad code -- http://master.php.net/manage/user-notes.php?action=delete+47848&report=yes&reason=bad+code
Reason: spam -- http://master.php.net/manage/user-notes.php?action=delete+47848&report=yes&reason=spam
Reason: useless example -- http://master.php.net/manage/user-notes.php?action=delete+47848&report=yes&reason=useless+example
Reason: contains commercial links -- http://master.php.net/manage/user-notes.php?action=delete+47848&report=yes&reason=contains+commercial+links
Reason: useless note -- http://master.php.net/manage/user-notes.php?action=delete+47848&report=yes&reason=useless+note
Reject -- http://master.php.net/manage/user-notes.php?action=reject+47848&report=yes
Search -- http://master.php.net/manage/user-notes.php