On Thu, Aug 01, 2002 at 03:40:23PM +0200, [EMAIL PROTECTED] wrote: > I'm facing a problem I thought would be fairly easy to deal with, but > haven't found a proper solution. Here it is : > > We have a web werver hosting a few tens of customers using > VirtualHosts. We have mod_php and use FTP for updates, each customer > having its own UID. [...]
> What we consider the "right" solution would be to have Apache run as > user.user in each virtual host. This seems to be doable with > User/Group directives. Unfortunatly : Apache doesn't honor those options in virtual host context, unless run as root and recompiled with some -DBIG_SECURITY_HOLE option. Obviously this is not a very secure solution. Take a look here: http://ftw.zamosc.pl/~lw/mdp/ http://luxik.cdi.cz/~devik/apache/ Wanted