blocking access to directory tree.

Warren Togami warren at togami.com
Thu Apr 26 11:30:16 PDT 2001


The same thing applies to any scripted language, PHP, asp, perl, java, or
compiled C binaries.  It is always more secure to hide data outside of a web
viewable directory.

----- Original Message -----
From: "Deven Phillips" <dphillips at viata.com>
To: "Linux & Unix Advocates & Users" <luau at list.luau.hi.net>
Sent: Thursday, April 26, 2001 8:10 AM
Subject: [luau] Re: blocking access to directory tree.


> A better method for this particular situation with PHP is to define an
> includes path in the php.ini file that is outside of the web tree. This
> allows you to store your important code where noone can ever get to it,
> even if they compromise your webserver's security configuration.
>



More information about the LUAU mailing list