>ISAPI is a more robust solution.
I would seriously question this, given the current stability of the ISAPI
version of PHP. If I set up any of my NT4 boxes with the ISAPI verion of
PHP, I can create a DOS attack against my own machine by just requesting one
php page - the entire set of iisadmin (
When you perform a load test, such as with Allaire ServletKiller or Apache
JMeter, you will see that a CGI solution does not scale well under load. If
your service load is normally not high, then this is only a concern if
someone were to mount a denial of service attack against you merely by
runn