[wp-trac] Re: [WordPress Trac] #1038: Limit access to php files

WordPress Trac wp-trac at lists.automattic.com
Mon Apr 3 18:29:33 GMT 2006


#1038: Limit access to php files
----------------------+-----------------------------------------------------
       Id:  1038      |      Status:  assigned                
Component:  Security  |    Modified:  Mon Apr  3 18:29:33 2006
 Severity:  trivial   |   Milestone:  2.1                     
 Priority:  lowest    |     Version:  1.5.2                   
    Owner:  matt      |    Reporter:  anonymousbugger         
----------------------+-----------------------------------------------------
Comment (by szepter):

 ''It'd be nice to block access to wp-config.php "just in case"; if
 something goes wrong with Apache and it stops parsing PHP files''

 It's improbable that something goes wrong with Apache and it stops parsing
 PHP files ... but if so, defines in the wp-config.php or wherever wouldn't
 solve that problem. These files will be available either way.

 In case of the PHP config stops working - I think - also .htaccess-
 limitations wouldn't join.

 The same applies to the plugin solution. This plugin wouldn't be executed
 if something goes wrong with Apache.

-- 
Ticket URL: <http://trac.wordpress.org/ticket/1038>
WordPress Trac <http://wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list