[X-Unix] Shared hosting with apache and php, security concerns

Scott Haneda scott at newgeo.com
Thu Mar 18 00:36:33 PST 2004


on 03/18/2004 12:05 AM, James Avgeris at jima at itempo.com wrote:

> On Mar 17, 2004, at 10:26 PM, Scott Haneda wrote:
> 
>> I think I need to "jail" all php, perl etc stuff to a particular users
>> directory, but I am not sure how to do this.
> 
> I think you need to look into suEXEC and/or chroot. The downside I
> believe is that you'll have to run PHP as a CGI rather than an Apache
> module.
> 
> If you find out more please post back to the list. I'm very interested
> in this as well.

I am getting to the point where I see that suEXEC is the only way to do
this, which is somewhat discouraging since I have no idea how to make it
work :)
-- 
-------------------------------------------------------------
Scott Haneda                                Tel: 415.898.2602
http://www.newgeo.com                       Fax: 313.557.5052
scott at newgeo.com                            Novato, CA U.S.A.



More information about the X-Unix mailing list