On 2/12/06, Sim <simvirus@xxxxxxxxx> wrote: > Hi! > > I'm trying to limit access for a cgi-bin folder, with Auth & IP > > This is my config for auth, but when I try to insert : "allow from", > it bypass Auth phase. > > How can I fix it ? > > Thanks! > > > httpd.conf > ----------------------------------------------------------------- > > <Directory "/var/www/cgi-bin/admin"> > Deny from all > Options ExecCGI > AllowOverride AuthConfig > Order deny,allow > </Directory> > > > .htaccess > ----------------------------------------------------------------- > AuthType Basic > AuthUserFile /etc/httpd/conf/admin.passwd > AuthName Auth > require valid-user > Satisfy any See the docs on Satisfy. Sounds like you want "Satisfy all" and to reverse the allow/deny stuff. And by the way, there is no need to use an .htaccess file. You can put the auth directives in the same <Directory> section. Joshua. --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See <URL:http://httpd.apache.org/userslist.html> for more info. To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx " from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx