O
O
Optimus2014-05-31 10:17:09
PHP
Optimus, 2014-05-31 10:17:09

Website security question

We are talking about a classic web server for example on Debian + Apache language php
I have a question about such a method when some files are placed above the www directory, in particular:
1. What is the idea of ​​​​this way of arranging files in general?
2. What is the point in this, because if an attacker finds out the password for ftp, then these files will still be available to him?
3. What kind of files and scripts should be placed above www?

Answer the question

In order to leave comments, you need to log in

1 answer(s)
A
Alexey Kuleshov, 2014-05-31
Pyan @marrk2

1. There is no direct public access to files
2. If he finds out the FTP password, only those files that are accessible via FTP will become available.
3. Scripts that will not be directly accessed (files included with include and require constructs).

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question