[mod-security-users] Idea/feature request
Brought to you by:
victorhora,
zimmerletw
|
From: Vincent D. <vi...@gr...> - 2004-08-20 16:48:36
|
Greetings, What if mod_security would, by default, deny access to files that are 777/writable by the httpd user? Could be considered an interesting feature, especially if it could be setup on a file per file basis, with the usual apache inheritance system... I have no clue whether this would be possible to implement into mod_security, as it doesn't manipulate filesystem objects (or does it?) Anyway, just an idea that was passing on #apache... Cheers, Vincent |