Kevin Brosius on Thu, 14 Nov 2002 08:40:06 -0500


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: [PLUG] webhosting question again


epike@isinet.com wrote:
> 
> ok i have another question about webhosting.
> 
> the scenario is,
> 
> - lots of users using the same
>   machine serving virtual websites.
> 
> - some users may want their own cgi-bin
> 
> regardless of any security i think of by way
> of permissions, I can't think of a secure way
> to protect the users files from each other.  The reason
> is if somebody writes a cgi-bin that should be
> readable and executed by apache, then that process
> will have the power to read other people web files!

Um, aren't these web page files?  Why would you want to make them read
protected from other accounts?  Aren't they already publicly accessible
through the web server?

-- 
Kevin Brosius
_________________________________________________________________________
Philadelphia Linux Users Group        --       http://www.phillylinux.org
Announcements - http://lists.netisland.net/mailman/listinfo/plug-announce
General Discussion  --   http://lists.netisland.net/mailman/listinfo/plug