[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: securing a PHP - odbc - mysql site.



On Mon, Sep 08, 2003 at 08:21:43PM -0400, Michael Alaimo wrote:
> Hmmm yeah, I was just wondering if some people could throw up 
> some thoughts as one would
> go about doing this... Like things to search for on google and 
> such....

http://www.php.net/manual/en/security.index.php

> I know https is a possibility...
> I also saw something on the net about keeping all php files and 
> the such out of the scope of
> the httpd server, and just putting files that call upon them 
> when they need to be used.  Is this
> actually possibly with the way OpenBSD chroots httpd?
> 
> What are possible ways that one, such as a malicious user, 
> could actually read information from
> the databases....
> 
> Also what would the best way to set up a username and password 
> field as part of the sql
> database?
> 
> Yes I am new to all of this and I am just trying to get my feet 
> wet... Any help would be appreciated.
> 
> _________________________________________________________________
> Fast, faster, fastest: Upgrade to Cable or DSL today!   
> https://broadband.msn.com