Re: PHP 4.1.2

2004-12-23 Thread Jason Lim
> > I was wondering... are you guys concerned about the latest PHP > > vulnerabilities, which affect the Debian stable 4.1.2? > > It seems that woodys php4 package isn't affected. > > http://lists.debian.org/debian-security/2004/12/msg00090.html > > Norbert

Re: PHP 4.1.2

2004-12-23 Thread Jacob S
On Thu, 23 Dec 2004 09:36:24 +0100 Philipp Kern <[EMAIL PROTECTED]> wrote: > On 22. Dec 2004, at 23:58 Uhr, Jacob S wrote: > > You make it sound like the version in Sarge has these security > > vulnerabilities fixed. Except, it's still 4.3.9 - instead of 4.3.10 > > which is supposed to fix this pr

Re: PHP 4.1.2

2004-12-23 Thread Norbert Tretkowski
* Jason Lim wrote: > I was wondering... are you guys concerned about the latest PHP > vulnerabilities, which affect the Debian stable 4.1.2? It seems that woodys php4 package isn't affected. http://lists.debian.org/debian-security/2004/12/msg00090.html Norbert -- To UNSUBSCRIB

Re: PHP 4.1.2

2004-12-23 Thread Christian Storch
t how can we still stick to the PHP version in Stable if there are > serious security issues with that version and no updates/bugfixes are > being released? Perhaps very simple. ;) Think about a stage between 'stable' and 'testing' - I would call it 'backport&

Re: PHP 4.1.2

2004-12-23 Thread Jasper Metselaar
> I'd just like to have at least an indication if anyone even _wants_ > to fix the existing PHP version, or... not. Something I don't really get here. Debian states on it's site: <-- IMPORTANT: the `unstable' version of Debian is the version to which the newest ve

Re: PHP 4.1.2

2004-12-23 Thread Philipp Kern
On 22. Dec 2004, at 23:58 Uhr, Jacob S wrote: You make it sound like the version in Sarge has these security vulnerabilities fixed. Except, it's still 4.3.9 - instead of 4.3.10 which is supposed to fix this problem. 4.3.10 is already in Sarge. (See http://packages.qa.debian.org/php4) Regards, Phili

Re: PHP 4.1.2

2004-12-22 Thread Michael Loftis
--On Thursday, December 23, 2004 10:47 +0800 Chad Adlawan <[EMAIL PROTECTED]> wrote: Did you guys perhaps mean the packages from dotdeb.org? Because I just re-checked backports.org, and they still dont package PHP4: http://www.backports.org/debian/dists/stable/ d-oh, yeah. long day :) -- To UN

Re: PHP 4.1.2

2004-12-22 Thread Chad Adlawan
In response to: Michael Loftis <[EMAIL PROTECTED]> wrote: > > FWIW I run the backports.org version of PHP4 pretty much everywhere, > including the hosting company I work for. > And: August MacBeth <[EMAIL PROTECTED]> wrote: > > I've been using backport's 4.3.10 packages in production without

Re: PHP 4.1.2

2004-12-22 Thread Jacob S
ies, i > > think there is a much greater urgency and importance. > > For serious PHP deployment you would consider an actual version, not > the one you could find in stable. > > > I wish we could get an update if they are even _WORKING_ on a PHP > > update, > &g

Re: PHP 4.1.2

2004-12-22 Thread Jason Lim
> > --On Wednesday, December 22, 2004 23:42 +0100 Philipp Kern > <[EMAIL PROTECTED]> wrote: > > > In my opinion it is not worth to backport PHP 4.3 to stable as sarge > > *should* > > be released as soon as security team support is available. > > Sarge i

Re: PHP 4.1.2

2004-12-22 Thread Michael Loftis
--On Wednesday, December 22, 2004 23:42 +0100 Philipp Kern <[EMAIL PROTECTED]> wrote: In my opinion it is not worth to backport PHP 4.3 to stable as sarge *should* be released as soon as security team support is available. Sarge is taking an extremely long time to get out the door. Been

Re: PHP 4.1.2

2004-12-22 Thread Philipp Kern
On 22. Dec 2004, at 23:12 Uhr, Jason Lim wrote: Little bugfixes and even local exploits... okay... i can understand there is less urgency. But for REMOTELY exploitable vulnerabilities, i think there is a much greater urgency and importance. For serious PHP deployment you would consider an actual

Re: PHP 4.1.2

2004-12-22 Thread Jason Lim
would have got an update by now Little bugfixes and even local exploits... okay... i can understand there is less urgency. But for REMOTELY exploitable vulnerabilities, i think there is a much greater urgency and importance. I wish we could get an update if they are even _WORKING_ on a PHP update, or

Re: PHP 4.1.2

2004-12-22 Thread Michael Loftis
need modules like PayFlowPro which they don't include) but other than that it's the same package you'd get from www.backports.org -- good project, quite a few packages. sounds like that particular developer just has a thing against PHP BTW, so take his words for a grain of salt. I&#

Re: PHP 4.1.2

2004-12-22 Thread August MacBeth
* Jason Lim <[EMAIL PROTECTED]> |__ Wed, Dec 22, 2004 at 10:42:57PM +0800: > > We're all worried. There are 2 threads going on in debian-security > > about this issue: > > > > http://lists.debian.org/debian-security/2004/12/msg00044.html > > http://lists.debian.org/debian-security/2004/12/msg0004

Re: PHP 4.1.2

2004-12-22 Thread Jason Lim
> We're all worried. There are 2 threads going on in debian-security > about this issue: > > http://lists.debian.org/debian-security/2004/12/msg00044.html > http://lists.debian.org/debian-security/2004/12/msg00047.html <...> > > http://lists.debian.org/debian-security/2004/12/msg00054.html > Just r

Re: PHP 4.1.2

2004-12-22 Thread Chad Adlawan
> > Or perhaps you guys think there is no need to worry? > We're all worried. There are 2 threads going on in debian-security about this issue: http://lists.debian.org/debian-security/2004/12/msg00044.html http://lists.debian.org/debian-security/2004/12/msg00047.html > > FWIW dotdeb.org has up

Re: PHP 4.1.2

2004-12-22 Thread aCaB
On 12/22/04 11:03, Jason Lim wrote: Hi all, I was wondering... are you guys concerned about the latest PHP vulnerabilities, which affect the Debian stable 4.1.2? How are you handling it? Debian Security Team still hasn't released any patches, so concerned and worried about this. Or perhap

PHP 4.1.2

2004-12-22 Thread Jason Lim
Hi all, I was wondering... are you guys concerned about the latest PHP vulnerabilities, which affect the Debian stable 4.1.2? How are you handling it? Debian Security Team still hasn't released any patches, so concerned and worried about this. Or perhaps you guys think there is no need to

PHP logging 2 Apache ErrorLog

2004-11-27 Thread David Zejda
Hi! Is there any way to order the PHP (mod_php) to log everything to ErrorLog defined by Apache in VirtualHost section? In php.ini I see only the possibility to specify the concrete global logfile or syslog, but a such setup doesn't fit to virtual host scenario... Thanks for your advic

Re: DoS on my OnlineStore (PHP)

2004-11-06 Thread martin f krafft
also sprach Michelle Konzack <[EMAIL PROTECTED]> [2004.11.06.1339 +0100]: > Can anyone give me some hints how to prevent abusing my PHP Scripts ? You could use something that can handle high load instead. Alternatively, put a reverse proxy in front of them, using a cache expiration

DoS on my OnlineStore (PHP)

2004-11-06 Thread Michelle Konzack
Hello, I have an OnlineStore and the pages are generated by PHP scripts. Now in the Last 3 weeks I had some DoS which mean, my "products.php" was called several 10.000 times in a realy short time... Because for a normal client access it is not possibel to call the "products.php

Re: include the mcrypt module of php

2004-10-23 Thread Francisco Castillo
Exactly, I has uncoment the dotdeb lamp php it apt/sources.list and reinstalled the php-mcrypt from it. That was the problem. Now my php-mcrypt funtions are working, thanks. Francisco Castillo. - Original Message - From: "Achim Schmidt" <[EMAIL PROTECTED]> To: &qu

Re: include the mcrypt module of php

2004-10-23 Thread Achim Schmidt
; > morpheo:/usr/lib/php4/20020429# cp ../20010901/mcrypt.so . > morpheo:/usr/lib/php4/20020429# /etc/init.d/apache restart > Reloading apache modulesPHP Warning: Unknown(): mcrypt: Unable to > initialize module > Module compiled with module API=20010901, debug=0, thread-safety

Re: include the mcrypt module of php

2004-10-23 Thread Francisco Castillo
/php4/20020429# cp ../20010901/mcrypt.so . morpheo:/usr/lib/php4/20020429# /etc/init.d/apache restart Reloading apache modulesPHP Warning: Unknown(): mcrypt: Unable to initialize module Module compiled with module API=20010901, debug=0, thread-safety=0 PHPcompiled with module API=20020429, debug=0

Re: include the mcrypt module of php

2004-10-23 Thread Francisco Castillo
t;Achim Schmidt" <[EMAIL PROTECTED]> To: "Francisco Castillo" <[EMAIL PROTECTED]> Cc: <[EMAIL PROTECTED]> Sent: Saturday, October 23, 2004 5:40 PM Subject: Re: include the mcrypt module of php What about: - apt-get install php4-mcrypt - check if "extension=mcryp

Re: include the mcrypt module of php

2004-10-23 Thread Achim Schmidt
What about: - apt-get install php4-mcrypt - check if "extension=mcrypt.so" was added to /etc/php4/apache/php.ini - restart apache now your php should know of mcrypt functions. good luck, achim Am Sa, 2004-10-23 um 17.32 schrieb Francisco Castillo: > Hello, > > I has try

include the mcrypt module of php

2004-10-23 Thread Francisco Castillo
Hello,   I has try to call the mcrypt functions on a my PHP Version 4.3.7-dotdeb + APACHE + DEBIAN WOODY System.      $td = mcrypt_module_open('tripledes', '', 'ecb', '');   $iv = mcrypt_create_iv (mcrypt_enc_get_iv_size($t

PHP list posting confirmation for debian-isp@lists.debian.org

2004-08-09 Thread PHP Lists Automoderator
our confirmation, "[EMAIL PROTECTED]" will be added to the list of pre-approved mail addresses for all of the PHP mailing lists, your original message will be delivered, and future emails from that address will be posted to the list automatically. You will not receive any confirmation of

recent php security update

2004-07-30 Thread Lucas Albers
Are most people running php stable? Or are you upgrading php to 4.38 from unstable? I'm stuck running 4.3.4 because I needed better pear support, and am leery of upgrading to 4.3.8 because stupidly enough it requires apache 1.3.31 as part of the upgrade. I was considering using the d

Re: Debian, Php-4.3.4 and Oracle-Connector

2004-07-30 Thread Richard Zuidhof
Volker Lieder wrote: Hello List, hope there is somebody who can help me ;-) I have a Debain-Server installed wit the oracle-client 9i and php4.3.4 Everthing works for its own, but now i have to add the php-option --with-oracle in the php-config. I have build php from the debian-packages and if i

Debian, Php-4.3.4 and Oracle-Connector

2004-07-30 Thread Volker Lieder
Hello List, hope there is somebody who can help me ;-) I have a Debain-Server installed wit the oracle-client 9i and php4.3.4 Everthing works for its own, but now i have to add the php-option --with-oracle in the php-config. I have build php from the debian-packages and if i want to compile it

Re: [PHP] safe mode bug ?

2004-06-07 Thread Michal Panoch
Robert Hensel <[EMAIL PROTECTED]> writes: > Hi, > > I understand that there are a lot of solutions to make PHP more safe. And > of course,I don't see safe_mode as _the_ solution. But I definetly consider > it to be a good extra protection, just like basedir restric

Re: [PHP] safe mode bug ?

2004-06-07 Thread Michal Panoch
Robert Hensel <[EMAIL PROTECTED]> writes: > Hi, > > I understand that there are a lot of solutions to make PHP more safe. And > of course,I don't see safe_mode as _the_ solution. But I definetly consider > it to be a good extra protection, just like basedir restric

Re: [PHP] safe mode bug ?

2004-06-07 Thread Emmanuel Lacour
On Sun, Jun 06, 2004 at 03:03:00PM +0200, Andreas John wrote: > Hi! > > There are 2.5 possibilities that make sense. > > a.) mod_suphp [Any volunteers to put that into debian tree??:-)] > www.suphp.org I've got preliminary packages for it (with an ITP). I'm going to put it somewhere and I'm a

Re: [PHP] safe mode bug ?

2004-06-07 Thread Emmanuel Lacour
On Sun, Jun 06, 2004 at 03:03:00PM +0200, Andreas John wrote: > Hi! > > There are 2.5 possibilities that make sense. > > a.) mod_suphp [Any volunteers to put that into debian tree??:-)] > www.suphp.org I've got preliminary packages for it (with an ITP). I'm going to put it somewhere and I'm a

Re: [PHP] safe mode bug ?

2004-06-06 Thread William Dode
Andreas John <[EMAIL PROTECTED]> writes: > Hi! > > There are 2.5 possibilities that make sense. > > a.) mod_suphp [Any volunteers to put that into debian tree??:-)] > www.suphp.org > b.) Run php as cgi and attach she-bang (#!/path/to/pgp-cgi) > c.) Run php as cg

Re: [PHP] safe mode bug ?

2004-06-06 Thread Robert Hensel
Hi, I understand that there are a lot of solutions to make PHP more safe. And of course,I don't see safe_mode as _the_ solution. But I definetly consider it to be a good extra protection, just like basedir restrictions, and the problem I described seems simply like a bug in safe_mode.

Re: [PHP] safe mode bug ?

2004-06-06 Thread Andreas John
Hi! There are 2.5 possibilities that make sense. a.) mod_suphp [Any volunteers to put that into debian tree??:-)] www.suphp.org b.) Run php as cgi and attach she-bang (#!/path/to/pgp-cgi) c.) Run php as cgi and teach the environment to treat .php files like binaries with the "binfmt&qu

Re: [PHP] safe mode bug ?

2004-06-06 Thread Franz Georg Köhler
of reading files that not belong to > the owner of the PHP-file. However, it does not seem to check for > directory ownerships. (debian stable, PHP4.1.2). PHP does give a warning > about safe_mode (as seen below) but then nicely lists the directory :( > This means any user can jus

[PHP] safe mode bug ?

2004-06-06 Thread Robert Hensel
Hi, I came upon a strange problem when trying to list directory's in safe mode as a normal user. Of course I expected this not to work, because safe_mode disables the possibility of reading files that not belong to the owner of the PHP-file. However, it does not seem to check for dire

Re: [PHP] safe mode bug ?

2004-06-06 Thread William Dode
Andreas John <[EMAIL PROTECTED]> writes: > Hi! > > There are 2.5 possibilities that make sense. > > a.) mod_suphp [Any volunteers to put that into debian tree??:-)] > www.suphp.org > b.) Run php as cgi and attach she-bang (#!/path/to/pgp-cgi) > c.) Run php as cg

Re: [PHP] safe mode bug ?

2004-06-06 Thread Robert Hensel
Hi, I understand that there are a lot of solutions to make PHP more safe. And of course,I don't see safe_mode as _the_ solution. But I definetly consider it to be a good extra protection, just like basedir restrictions, and the problem I described seems simply like a bug in safe_mode.

Re: [PHP] safe mode bug ?

2004-06-06 Thread Andreas John
Hi! There are 2.5 possibilities that make sense. a.) mod_suphp [Any volunteers to put that into debian tree??:-)] www.suphp.org b.) Run php as cgi and attach she-bang (#!/path/to/pgp-cgi) c.) Run php as cgi and teach the environment to treat .php files like binaries with the "binfmt&qu

Re: [PHP] safe mode bug ?

2004-06-06 Thread Franz Georg Köhler
of reading files that not belong to > the owner of the PHP-file. However, it does not seem to check for > directory ownerships. (debian stable, PHP4.1.2). PHP does give a warning > about safe_mode (as seen below) but then nicely lists the directory :( > This means any user can jus

[PHP] safe mode bug ?

2004-06-06 Thread Robert Hensel
Hi, I came upon a strange problem when trying to list directory's in safe mode as a normal user. Of course I expected this not to work, because safe_mode disables the possibility of reading files that not belong to the owner of the PHP-file. However, it does not seem to check for dire

Re: help with PHP/SQL

2004-05-18 Thread Craig Sanders
On Thu, May 13, 2004 at 09:58:35PM -0400, ziada Mrisho wrote: > I got your e-mail address from a forum thread on SQL Help. I desperately need > help for my class project. I need to know how to insert an image in a > database table. When I issue a CREATE table command, what attribute > represents an

Re: help with PHP/SQL

2004-05-18 Thread Craig Sanders
On Thu, May 13, 2004 at 09:58:35PM -0400, ziada Mrisho wrote: > I got your e-mail address from a forum thread on SQL Help. I desperately need > help for my class project. I need to know how to insert an image in a > database table. When I issue a CREATE table command, what attribute > represents an

Re: (OT!) help with PHP/SQL

2004-05-14 Thread Andreas Vent-Schmidt
r database engine. For finding out how to put the image into the database table, please use one of these PHP mailing list / phorums. Best regards, Andreas table. When I issue a CREATE table command, what attribute represents an image file? eg: CREATE TABLE SClassTable ( ?image _

Re: (OT!) help with PHP/SQL

2004-05-14 Thread Andreas Vent-Schmidt
r database engine. For finding out how to put the image into the database table, please use one of these PHP mailing list / phorums. Best regards, Andreas table. When I issue a CREATE table command, what attribute represents an image file? eg: CREATE TABLE SClassTable ( ?image _

help with PHP/SQL

2004-05-13 Thread ziada Mrisho
Hello,   I got your e-mail address from a forum thread on SQL Help. I desperately need help for my class project. I need to know how to insert an image in a database table. When I issue a CREATE table command, what attribute represents an image file? eg:   CREATE TABLE SClassTable (  ?image _

help with PHP/SQL

2004-05-13 Thread ziada Mrisho
Hello,   I got your e-mail address from a forum thread on SQL Help. I desperately need help for my class project. I need to know how to insert an image in a database table. When I issue a CREATE table command, what attribute represents an image file? eg:   CREATE TABLE SClassTable (  ?image _

Re: mod_php vs fastcgi/php speed [BENCHMARK]

2004-03-20 Thread Joris
Arkadiusz Miskiewicz wrote: Dnia Friday 19 of March 2004 20:48, Mirco 'meebey' Bauer napisał: migrating from mod to cgi is good as in security, but performance and also problems with some scripts. Could you also test fastcgi? cgi and fastcgi are different beasts. I assume turckcache is turcksoft m

Re: mod_php vs fastcgi/php speed [BENCHMARK]

2004-03-19 Thread Joris
Arkadiusz Miskiewicz wrote: Dnia Friday 19 of March 2004 20:48, Mirco 'meebey' Bauer napisał: migrating from mod to cgi is good as in security, but performance and also problems with some scripts. Could you also test fastcgi? cgi and fastcgi are different beasts. I assume turckcache is turcksoft

Re: mod_php vs fastcgi/php speed [BENCHMARK]

2004-03-19 Thread Arkadiusz Miskiewicz
Dnia Friday 19 of March 2004 20:48, Mirco 'meebey' Bauer napisał: > migrating from mod to cgi is good as in security, but performance and > also problems with some scripts. Could you also test fastcgi? cgi and fastcgi are different beasts. > Mirco 'meebey' Bauer -- Arkadiusz Miśkiewicz CS a

Re: mod_php vs fastcgi/php speed [BENCHMARK]

2004-03-19 Thread Mirco 'meebey' Bauer
Hi, On Fri, 2004-03-19 at 06:42, Joris wrote: > Hi, > > > I'm looking for some in-depth information on the speed difference > between mod_php and using php-cgi with fastcgi. > > So far a google search has yielded nothing but unbacked statements (I'll > clea

Re: mod_php vs fastcgi/php speed [BENCHMARK]

2004-03-19 Thread Arkadiusz Miskiewicz
Dnia Friday 19 of March 2004 20:48, Mirco 'meebey' Bauer napisał: > migrating from mod to cgi is good as in security, but performance and > also problems with some scripts. Could you also test fastcgi? cgi and fastcgi are different beasts. > Mirco 'meebey' Bauer -- Arkadiusz Miśkiewicz CS a

Re: mod_php vs fastcgi/php speed [BENCHMARK]

2004-03-19 Thread Mirco 'meebey' Bauer
Hi, On Fri, 2004-03-19 at 06:42, Joris wrote: > Hi, > > > I'm looking for some in-depth information on the speed difference > between mod_php and using php-cgi with fastcgi. > > So far a google search has yielded nothing but unbacked statements (I'll > clea

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Adam ENDRODI
On Fri, Mar 19, 2004 at 04:22:27PM +0100, Arkadiusz Miskiewicz wrote: > > Right now running apache and having multiple virtual hosts for multiple > clients is not secure. Each client can look into others *.php, *.inc files, > read for example database passwords from these files etc

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Arkadiusz Miskiewicz
s called metux MPM ( http://www.metux.de/mpm/en/?patpage=index, http://www.sannes.org/metuxmpm/). Unfortunately this project seems to be dead (or almost dead), too. - with perchild you will have each virtual host running under UID/GID specified in config file so you will have secure php, cgi, mod_perl,

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Adam ENDRODI
On Fri, Mar 19, 2004 at 04:22:27PM +0100, Arkadiusz Miskiewicz wrote: > > Right now running apache and having multiple virtual hosts for multiple > clients is not secure. Each client can look into others *.php, *.inc files, > read for example database passwords from these files etc

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Joris
n that for instance mod_php and (fast)cgi/php can compare directly in terms of security, so the administrator has more freedom to weight speed and design philosophy against one another. -- Greetings Joris [EMAIL PROTECTED]

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Shri Shrikumar
On Fri, 2004-03-19 at 08:11, Arkadiusz Miskiewicz wrote: > The interesting thing is that no one works on fixing perchild MPM in apache2 > that would allow to use standard mod_php in secure way :/ > > It would be great if someone get paid to fix that once for all. Hi, I wonder if you could fill

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Arkadiusz Miskiewicz
s called metux MPM ( http://www.metux.de/mpm/en/?patpage=index, http://www.sannes.org/metuxmpm/). Unfortunately this project seems to be dead (or almost dead), too. - with perchild you will have each virtual host running under UID/GID specified in config file so you will have secure php, cgi, mod_perl,

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Joris
n that for instance mod_php and (fast)cgi/php can compare directly in terms of security, so the administrator has more freedom to weight speed and design philosophy against one another. -- Greetings Joris [EMAIL PROTECTED] -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of &q

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Shri Shrikumar
On Fri, 2004-03-19 at 08:11, Arkadiusz Miskiewicz wrote: > The interesting thing is that no one works on fixing perchild MPM in apache2 > that would allow to use standard mod_php in secure way :/ > > It would be great if someone get paid to fix that once for all. Hi, I wonder if you could fill

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Russell Coker
On Fri, 19 Mar 2004 22:05, Joris <[EMAIL PROTECTED]> wrote: > > The interesting thing is that no one works on fixing perchild MPM in > > apache2 that would allow to use standard mod_php in secure way :/ > > Is that the mode where the clients run with a different uid for each > virtual host? Yes.

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Joris
Arkadiusz Miskiewicz wrote: Dnia Friday 19 of March 2004 06:42, Joris napisał: So far a google search has yielded nothing but unbacked statements (I'll clean up the language a bit): "mod_php is a lot fast er than php-cgi", and "fastcgi/php is a lot faster than mod_php". No

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Arkadiusz Miskiewicz
Dnia Friday 19 of March 2004 11:24, Adam ENDRODI napisał: > Privilege separation and fastcgi is not trivial to solve. You must > specify a different interpreter for each user. Huh? Why different interpreter? http://www.t17.ds.pwr.wroc.pl/~misiek/index.php/ApacheModFastcgiPHP > Authorization and f

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Adam ENDRODI
On Fri, Mar 19, 2004 at 06:42:08AM +0100, Joris wrote: > > Also, experiences migrating from mod_php to (fast)cgi/php would be > welcome :) You'll need to recompile the interpreter. That's a lot of fun. Privilege separation and fastcgi is not trivial to solve. You must

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Russell Coker
On Fri, 19 Mar 2004 22:05, Joris <[EMAIL PROTECTED]> wrote: > > The interesting thing is that no one works on fixing perchild MPM in > > apache2 that would allow to use standard mod_php in secure way :/ > > Is that the mode where the clients run with a different uid for each > virtual host? Yes.

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Joris
Arkadiusz Miskiewicz wrote: Dnia Friday 19 of March 2004 06:42, Joris napisał: So far a google search has yielded nothing but unbacked statements (I'll clean up the language a bit): "mod_php is a lot fast er than php-cgi", and "fastcgi/php is a lot faster than mod_php".

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Arkadiusz Miskiewicz
Dnia Friday 19 of March 2004 11:24, Adam ENDRODI napisał: > Privilege separation and fastcgi is not trivial to solve. You must > specify a different interpreter for each user. Huh? Why different interpreter? http://www.t17.ds.pwr.wroc.pl/~misiek/index.php/ApacheModFastcgiPHP > Authorization and f

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Adam ENDRODI
On Fri, Mar 19, 2004 at 06:42:08AM +0100, Joris wrote: > > Also, experiences migrating from mod_php to (fast)cgi/php would be > welcome :) You'll need to recompile the interpreter. That's a lot of fun. Privilege separation and fastcgi is not trivial to solve. You must

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Arkadiusz Miskiewicz
Dnia Friday 19 of March 2004 06:42, Joris napisał: > So far a google search has yielded nothing but unbacked statements (I'll > clean up the language a bit): "mod_php is a lot fast er than php-cgi", > and "fastcgi/php is a lot faster than mod_php". Not very usefu

Re: mod_php vs fastcgi/php speed

2004-03-19 Thread Arkadiusz Miskiewicz
Dnia Friday 19 of March 2004 06:42, Joris napisał: > So far a google search has yielded nothing but unbacked statements (I'll > clean up the language a bit): "mod_php is a lot fast er than php-cgi", > and "fastcgi/php is a lot faster than mod_php". Not very usefu

mod_php vs fastcgi/php speed

2004-03-19 Thread Joris
Hi, I'm looking for some in-depth information on the speed difference between mod_php and using php-cgi with fastcgi. So far a google search has yielded nothing but unbacked statements (I'll clean up the language a bit): "mod_php is a lot fast er than php-cgi", and "fa

mod_php vs fastcgi/php speed

2004-03-18 Thread Joris
Hi, I'm looking for some in-depth information on the speed difference between mod_php and using php-cgi with fastcgi. So far a google search has yielded nothing but unbacked statements (I'll clean up the language a bit): "mod_php is a lot fast er than php-cgi", and &

Re: PHP Nuke 7.0

2004-02-20 Thread Richard Brooks
s" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, February 18, 2004 11:24 PM Subject: Re: PHP Nuke 7.0 > Quick update . . . > > After sitting here thinking about it for a moment, I did ifconfig and got > the ip number of the ppp0 connection and accessed tha

Re: PHP Nuke 7.0

2004-02-18 Thread Richard Brooks
umber and not tactful.ods.org. Is it beginning to sound like a DNS/Apache issue ? Any hints would be appreciated. Regards, Richard - Original Message - From: "Richard Brooks" <[EMAIL PROTECTED]> To: Sent: Wednesday, February 18, 2004 11:10 PM Subject: PHP Nuke 7.0 &g

PHP Nuke 7.0

2004-02-18 Thread Richard Brooks
he LAN. At first it was the wrong version of PHP at fault ( I thought ) which neccessitated the change to testing for the later version. The domain name is through ods.org, and resolves fine for email & ssh, and apache http://tactful.ods.org/uptime.html ud display http://ta

Re: PHP Nuke 7.0

2004-02-18 Thread Richard Brooks
umber and not tactful.ods.org. Is it beginning to sound like a DNS/Apache issue ? Any hints would be appreciated. Regards, Richard - Original Message - From: "Richard Brooks" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wednesday, February 18, 2004 11:10 PM Sub

PHP Nuke 7.0

2004-02-18 Thread Richard Brooks
he LAN. At first it was the wrong version of PHP at fault ( I thought ) which neccessitated the change to testing for the later version. The domain name is through ods.org, and resolves fine for email & ssh, and apache http://tactful.ods.org/uptime.html ud display http://ta

Re: apache php zend? errors!?!?

2004-01-08 Thread Peter
D]> To: Sent: Thursday, January 08, 2004 6:52 AM Subject: apache php zend? errors!?!? > Hi all, > > i have installed php4.3.4 with Zend Optimizer and Zend Engine. > So when i visit a Zend encoded site i get an apache error. > [notice] child pid 19024 exit signal Segmentation fault

Re: apache php zend? errors!?!?

2004-01-08 Thread Peter
> To: <[EMAIL PROTECTED]> Sent: Thursday, January 08, 2004 6:52 AM Subject: apache php zend? errors!?!? > Hi all, > > i have installed php4.3.4 with Zend Optimizer and Zend Engine. > So when i visit a Zend encoded site i get an apache error. > [notice] child pid 190

apache php zend? errors!?!?

2004-01-07 Thread Daniel Holze
Hi all, i have installed php4.3.4 with Zend Optimizer and Zend Engine. So when i visit a Zend encoded site i get an apache error. [notice] child pid 19024 exit signal Segmentation fault (11) Normaly php sites are working. Configuration and infos about php apache and Zend can u get here: http

apache php zend? errors!?!?

2004-01-07 Thread Daniel Holze
Hi all, i have installed php4.3.4 with Zend Optimizer and Zend Engine. So when i visit a Zend encoded site i get an apache error. [notice] child pid 19024 exit signal Segmentation fault (11) Normaly php sites are working. Configuration and infos about php apache and Zend can u get here: http

Re: E-Center in PHP and Payments per Credit-Cards

2003-11-20 Thread Michelle Konzack
Am 2003-11-20 12:22:51, schrieb Detelin Batchovski: >Hello Michele, >IMHO you have only 2 products, OpenSource and powerfull. >http://www.icdevgroup.org Interchange (Mod_Perl/MySQL/PostgreSQL, support >visa).Have good demo site. >http://www.oscommerce.com (PHP/MySQL, support v

Re: E-Center in PHP and Payments per Credit-Cards

2003-11-20 Thread Michelle Konzack
Am 2003-11-20 12:22:51, schrieb Detelin Batchovski: >Hello Michele, >IMHO you have only 2 products, OpenSource and powerfull. >http://www.icdevgroup.org Interchange (Mod_Perl/MySQL/PostgreSQL, support visa).Have >good demo site. >http://www.oscommerce.com (PHP/MySQL, support v

RE: E-Center in PHP and Payments per Credit-Cards

2003-11-20 Thread Detelin Batchovski
Hello Michele, IMHO you have only 2 products, OpenSource and powerfull. http://www.icdevgroup.org Interchange (Mod_Perl/MySQL/PostgreSQL, support visa).Have good demo site. http://www.oscommerce.com (PHP/MySQL, support visa.).Have good demo site. Sorry, but they not suport PHP+PostgreSQL.Why

RE: E-Center in PHP and Payments per Credit-Cards

2003-11-20 Thread Detelin Batchovski
Hello Michele, IMHO you have only 2 products, OpenSource and powerfull. http://www.icdevgroup.org Interchange (Mod_Perl/MySQL/PostgreSQL, support visa).Have good demo site. http://www.oscommerce.com (PHP/MySQL, support visa.).Have good demo site. Sorry, but they not suport PHP+PostgreSQL.Why

E-Center in PHP and Payments per Credit-Cards

2003-11-19 Thread Michelle Konzack
Hello, curently I am using 'Intershop 4' (90 days trial) but I think, it is a little bit too expensive (8 Shops with Credit-Card payment around 8000 ¤) Is there a solution Open-Source written in PHP using postgresql and supports payments wit VISA dard ? I like to start my On

E-Center in PHP and Payments per Credit-Cards

2003-11-19 Thread Michelle Konzack
Hello, curently I am using 'Intershop 4' (90 days trial) but I think, it is a little bit too expensive (8 Shops with Credit-Card payment around 8000 ¤) Is there a solution Open-Source written in PHP using postgresql and supports payments wit VISA dard ? I like to start my On

php/cgi scripts running on own username

2003-08-14 Thread jasper
Hi, I am running Debian Woody with the Apache-SSL package and the PHP 4.1.2 package. The websites (virtual domains) of my users are in ~username/public_html Everything runs fine... but right now all PHP (and CGI) scripts are executed as www-data. As you will understand I want these to run under

RE: PHP 4.3.x

2003-08-14 Thread Gregory Wood
to look at it. Best of luck. Greg Wood -Original Message- From: Christian Storch [mailto:[EMAIL PROTECTED] Sent: Wednesday, August 06, 2003 12:15 PM To: [EMAIL PROTECTED] Subject: RE: PHP 4.3.x Sorry but I can only see 4.2.3 via browser or apt-get!? Christian Storch -Origin

Re: PHP 4.3.x

2003-08-14 Thread Wouter
le deb-make produced 4.3, adapting the > debian/rules file from the sid version seems not as trivial as I thought as > the php guys seem to have moved things around a bit. (btw, 4:4.2.3-14 is the > version in sid right now, so I I wouldn't need a deb line at all...) as I post

RE: PHP 4.3.x

2003-08-14 Thread Gregory Wood
The solution that I'm using is a secondary Debian site. To your sources.list add: deb http://debian.moolfreet.com ./ Greg Wood -Original Message- From: Wouter [mailto:[EMAIL PROTECTED] Sent: Wednesday, August 06, 2003 6:52 AM To: [EMAIL PROTECTED] Subject: Re: PHP 4.3.x On Wed,

PHP 4.3.x

2003-08-14 Thread Adrian von Bidder
Yo! Anyobdy here has preliminary packages of a recent PHP version? Self-compiling with all dependencies etc. etc. is somewhat tedious... (Or, even better, Adam, you got news for us?) greetings -- vbi -- Available for key signing in Zürich and Basel, Switzerland (what&#

RE: PHP 4.3.x

2003-08-14 Thread Christian Storch
Sorry but I can only see 4.2.3 via browser or apt-get!? Christian Storch -Original Message- From: Gregory Wood [mailto:[EMAIL PROTECTED] Sent: Wednesday, August 06, 2003 2:46 PM To: Wouter; [EMAIL PROTECTED] Subject: RE: PHP 4.3.x The solution that I'm using is a secondary Debian

Re: PHP 4.3.x

2003-08-10 Thread Wouter
On Wed, 6 Aug 2003, Adrian von Bidder wrote: > Anyobdy here has preliminary packages of a recent PHP version? Self-compiling > with all dependencies etc. etc. is somewhat tedious... check http://www.apt-get.org/ there are a couple. -- To UNSUBSCRIBE, email to [EMAIL PROTECTED]

  1   2   3   4   >