Toon posts:

Security Alert! The PHP CGI cannot be accessed directly

Pagina: 1
Acties:
  • 48 views sinds 30-01-2008

Verwijderd

Topicstarter
Is er al iemand die deze waarschuwing heeft gehad. ik heb ISS 6.0 met 2003 server en sinds ik de nieuwe php erop het gezet krijg ik deze waarschuwing. weet iemand hoe ik deze waarschuwing weg krijg zonder dat ik iets moet zetten bij alle php sites

Security Alert! The PHP CGI cannot be accessed directly.
This PHP CGI binary was compiled with force-cgi-redirect enabled. This means that a page will only be served up if the REDIRECT_STATUS CGI variable is set, e.g. via an Apache Action directive.

For more information as to why this behaviour exists, see the manual page for CGI security.

For more information about changing this behaviour or re-enabling this webserver, consult the installation file that came with this distribution, or visit the manual page.

  • TheRookie
  • Registratie: December 2001
  • Niet online

TheRookie

Nu met R1200RT

For more information about changing this behaviour or re-enabling this webserver, consult the installation file that came with this distribution, or visit the manual page.
en...... wat hadden de bijbehorende docs te melden ? of de php site

[ Voor 29% gewijzigd door TheRookie op 21-11-2003 22:09 . Reden: linkje naar oplossing ]


Verwijderd

Topicstarter
maakt niet uit op wat voor php site ik probeer weer te geven ze komen allemaal met deze foutmelding

  • dingstje
  • Registratie: Augustus 2002
  • Laatst online: 02-01-2024
Dat bedoelt hij niet. Hij bedoelt dat je de PHP manual moet lezen [en zoeken op Google]. In de link die hij gepost heeft staat:
You may disable this restriction by recompiling the PHP binary with the
--disable-force-cgi-redirect switch. If you do this and you have your
PHP CGI binary accessible somewhere in your web tree, people will be
able to circumvent .htaccess security by loading files through the PHP
parser. A good way around this is to define doc_root in your php.ini
file to something other than your top-level DOCUMENT_ROOT. This way you
can separate the part of your web space which uses PHP from the normal
part using .htaccess security. If you do not have any .htaccess
restrictions anywhere on your site you can leave doc_root undefined. If
you are running IIS, you may safely set cgi.force_redirect=0 in php.ini.
Duidelijk genoeg?

If you can't beat them, try harder


Verwijderd

Topicstarter
de verwijzing gaat hierheen

http://nl2.php.net/security.cgi-bin
en de 2de hier heen
http://nl3.php.net/install.windows

maar ik word daar niet veel wijzer van

  • TheRookie
  • Registratie: December 2001
  • Niet online

TheRookie

Nu met R1200RT

euuuh, mijn 1e link is
code:
1
http://www.google.com/search?q=Security+Alert%21+The+PHP+CGI+cannot+be+accessed+directly.+site:www.php.net&l=nl
, de 2e
code:
1
http://bugs.php.net/bug.php?id=16111&edit=1


waar haal je nl?.php.net vandaan ?

  • Janoz
  • Registratie: Oktober 2000
  • Laatst online: 17-08 23:56

Janoz

Moderator Devschuur®

!litemod

Je gaat mij niet wijsmaken dat je helemaal niks hebt gevonden tussen de 3450 hits die je bij google vindt bij het zoeken naar deze foutmelding. Daarnaast staat een oplossing gewoon in de gegeven link (goed, je moet eerst nog op een link op die pagina drukken en dan naar beneden scrollen. Maar ik heb eigenlijk geen ID wat je bedoeld met "maakt niet uit op wat voor php site ik probeer weer te geven ze komen allemaal met deze foutmelding"

In het kort. Deze instalatie vraag heeft niks met programming & webscripting te maken. Daarnaast zijn we hier niet zo blij met openingsposts waar alleen een foutmelding in staat.

Ken Thompson's famous line from V6 UNIX is equaly applicable to this post:
'You are not expected to understand this'

Pagina: 1

Dit topic is gesloten.