[fedora] Apache and PHP

From: Qyvind_Lode?= (o-lode_at_online.no)
Date: 08/31/04

  • Next message: Bill Tetens: "Need help with dvd video playing"
    To: "Fedora-List" <fedora-list@redhat.com>
    Date: Tue, 31 Aug 2004 20:23:42 +0200
    
    

    Hello there!

    I have a Fedora 1 box running Apache 2.0.50.
    I have installed it using Fedora RPMs.

    A friend of mine has his homepage on my server and he have a PHP guestbook.
    The PHP file is called guestbook.php and when users submit something in his
    guestbook the php script writes that to a file called guestbook.txt.

    This work just fine but he is worried by the permissions on the file.
    The guestbook.txt file have the following permissions:
    -rwxr-xrw-

    Owner is the username of my friend and the groupowner is also my friend.

    He have heard someplace that having such a file world writeable is a
    security risk.
    He tells me that the file should not be writeable for everyone but it has to
    be or the php script fails I tell him...

    But he insists that it's possible to use this php script and write to the
    txt file without having all other users write permission.
    He says that it's a way of just giving the script permission to write to the
    txt file and that's a good idea because now everyone can do whatever thety
    want to the txt file...

    The only problem is that he doesn't remember how this was done and don't
    know either...

    How is this done by the Pro's?

    Øyvind

    -- 
    fedora-list mailing list
    fedora-list@redhat.com
    To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list
    

  • Next message: Bill Tetens: "Need help with dvd video playing"

    Relevant Pages

    • Re: HPLIP 3.9.8...
      ... Sounds like a subjective statement to me :-) Did your friend say exactly ... is that later versions have drivers for later devices. ... I've used Fedora and its predecessors since the old RHL 4.X series. ... I can't say that I've noticed any difference at all on the ink-jet. ...
      (Fedora)
    • Re: Inappropriate content in Fedora Core 2
      ... and the firm was ... But her friend from Chile, ... >> I'm working with Fedora in a business environment and I don't think this ... >> correctness is running rampant in the corporate world. ...
      (Fedora)
    • My first php and a problem.
      ... I got a php script for a "tell a friend form", ... html form: ... function reset() { ...
      (microsoft.public.frontpage.client)
    • Re: HPLIP 3.9.8...
      ... I've been using hplip since it first came out with Fedora. ... My friend has a newer OfficeJet J4680 series WiFi printer. ... he also said that the print quality improved as well. ... “If you don't read the newspaper you are uninformed, ...
      (Fedora)
    • Re: Sending email from my php registration
      ... database table and most probably have to change a lot of queries as well. ... mean person and friend are exactly the same table. ... > Can anyone tell me how to create a php script that when the user click ... > I created this ff table structure using mysql? ...
      (comp.lang.php)