Re: ini_set() security question

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Wed, May 30, 2007 2:44 pm, Samuel Vogel wrote:
>>> I would like to allow the users to ini_set(), while disabling the
>>> risky
>>> options with php_admin_flag/value!
>>>
>>
>> I don't think php_admin_* can be over-ridden -- that's kinda the
>> whole
>> point of that.
>
>  The Problem is, that i can be overwritten using ini_set()...
> I just found that out by testing it and now I don't even have to worry
> about what options to disable, because I can't disable any of them :(
>
> Any thoughts on that?

Show us your test code?

-- 
Some people have a "gift" link here.
Know what I want?
I want you to buy a CD from some indie artist.
http://cdbaby.com/browse/from/lynch
Yeah, I get a buck. So?

-- 
PHP General Mailing List (http://www.php.net/)
To unsubscribe, visit: http://www.php.net/unsub.php


[Index of Archives]     [PHP Home]     [Apache Users]     [PHP on Windows]     [Kernel Newbies]     [PHP Install]     [PHP Classes]     [Pear]     [Postgresql]     [Postgresql PHP]     [PHP on Windows]     [PHP Database Programming]     [PHP SOAP]

  Powered by Linux