Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 15 Nov 2001 14:35:19 +0300
From:      Dmitry Mottl <dima@sinp.msu.ru>
To:        Anthony Atkielski <anthony@atkielski.com>
Cc:        freebsd-questions@FreeBSD.ORG, freebsd-security@FreeBSD.ORG
Subject:   Re: Apache question
Message-ID:  <3BF3A877.90007@sinp.msu.ru>
References:  <3BF3A166.2090009@sinp.msu.ru> <008001c16dc6$ca418bd0$0a00000a@atkielski.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Anthony Atkielski wrote:

> What exactly do you mean when you say that virtual hosts must have "no access to
> each other"?
User A can write a cgi script which can read user B files,

cause a cgi will run under wwwguest, and user B files must readable by wwwguest
So, I don't want A to read B's files.

A and B are users that have RW access to their virtual hosts (through ftp)

wwwguest is a httpd sandbox.

--
best regards,
Dmitry Mottl



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3BF3A877.90007>