Re: [PHP] sanity check please

2001-03-31 Thread Felix Kronlage
On Fri, Mar 30, 2001 at 06:45:21PM -0500, ..s.c.o.t.t.. [gts] wrote: > i dont see how a surfer could get your PHP source code > via the webserver. what happens if the webserver once gets started without the php-interpreter being there? You get to see the raw-files (if they are in the document-ro

RE: [PHP] sanity check please

2001-03-30 Thread ..s.c.o.t.t.. [gts]
; From: Jerry Lake [mailto:[EMAIL PROTECTED]] > Sent: Friday, March 30, 2001 6:42 PM > To: [EMAIL PROTECTED] > Subject: RE: [PHP] sanity check please > > > you can put you database connection > in a file below the web root > and include it into the script. > that w

Re: [PHP] sanity check please

2001-03-30 Thread Michael Kimsal
Les Neste wrote: > Hi, > > I have a question about security with PHP. I'm building a site with PHP > and some of the scripts connect to MySQL. All someone needs to do to get > my MySQL passwords is view the PHP source, right? And the recommended > approach around this is to use Zend, right?

RE: [PHP] sanity check please

2001-03-30 Thread Jerry Lake
you can put you database connection in a file below the web root and include it into the script. that way it isn't visible in the source. Jerry Lake- [EMAIL PROTECTED] Web Designer Europa Communications - http://www.europa.com Pacifier Online - http://www.pacifier.com -Origi