Hi,

On Sat, 26 Nov 2005 11:57:45 -0500, in php.internals
[EMAIL PROTECTED] (Daniel Convissor) wrote:

>If you have some suggestions for documentation improvements, make a patch 
>against http://cvs.php.net/phpdoc/en/features/safe-mode.xml, post the 
>patch on a website somewhere then open a documentation bug about it and 
>provide the link to the patch.

First of all, this is about PHP 6. There would be no reason for
changing the safe-mode page as safe-mode does not exist in PHP 6.

Second, there is a difference between features and recommendations.
Several features is documented even though they would not fit in a
"best practice" recommendation.

Third, there seem no consensus about such "best practice for shared
hosts". Some recommend open_basedir and disable_functions (or
safe_mode). Some recommend running php as different users. While there
might not be a need for just one recommendation I believe  "safe_mode
isn't safe so don't rely on it" only tells users what not to do
without providing any alternatives.

If there is a clarification I would like to write some documentation
aiming at PHP6. But before any consensus and possible new directives
it would be too early to put up some text.

-- 
- Peter Brodersen

--
PHP Internals - PHP Runtime Development Mailing List
To unsubscribe, visit: http://www.php.net/unsub.php

Reply via email to