Menu ▾ ▴

#10 .htaccess for application/config directories

open
nobody
None
5
2010-10-28
2010-10-28
c0 1a
No

assume somebody configures the app, but forgets to 'enable' the default .htaccess.
all the configuration then is readable by any user in the web.
to prevent this there should be a .htaccess that yields a forbidden in each directory vmsa provides.

Discussion


Log in to post a comment.