[TriLUG] Apache sharing files out of a samba share

John Berninger johnw at berningeronline.net
Thu Jul 14 08:13:14 EDT 2005


On Wed, 13 Jul 2005, David McDowell wrote:

> What do you mean by sanity checking?

You don't want to readfile(/etc/hosts) or
readfile(some-internal-nda-document).  Make sure the parameter is on a
list of permitted files before serving it out.  A
readfile(spreadsheet-with-payroll-information) would be especially
bad, methinks...


-- 
John Berninger
                                                                                
GPG Key ID: A8C1D45C
        Fingerprint: B1BB 90CB 5314 3113 CF22  66AE 822D 42A8 A8C1 D45C

Ita erat quando hic adveni.
--



More information about the TriLUG mailing list