In article 
<[EMAIL PROTECTED]>, 
[EMAIL PROTECTED] (Brett W. McCoy) wrote:

> You've killed any security also if you don't remove backup files from your
> web space.  emacs, for instance, creates files appended with ~, and people
> forget to delete them (or create a cron job that does it).  Big hole
> there.  

hoepfully the webserver is configured not to serve up those files. :)

> At the very least, files included in a script that contain
> sensitive information should be kept away from the document root of your
> webserver.

absolutely.

-- 
brian d foy <[EMAIL PROTECTED]> - Perl services for hire
CGI Meta FAQ - http://www.perl.org/CGI_MetaFAQ.html
Troubleshooting CGI scripts - http://www.perl.org/troubleshooting_CGI.html


-- 
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to