Skip to Content
Wicked Cool PHP
book

Wicked Cool PHP

by William Steinmetz, Brian Ward
February 2008
Intermediate to advanced
216 pages
4h 33m
English
No Starch Press
Content preview from Wicked Cool PHP

#16: Restricting the Files that PHP Can Access

If you're worried about a malignant PHP script accessing system files (such as your password file), you can limit the directories that PHP has access to with the open_basedir setting. When open_basedir is enabled, PHP cannot open or otherwise manipulate any files outside of the defined directories. Here's a php.ini example that limits access to /home/www:

open_basedir = /home/www

You can add access to multiple directories by separating them with a colon (:) for Unix or a semicolon (;) in Windows.

Note

By default, PHP will allow access to the specified directory and all subdirectories below. If you'd like to limit this to only the files in the specified directory, add a slash to the end of the path; for ...

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

Modern PHP

Modern PHP

Josh Lockhart
PHP for Absolute Beginners

PHP for Absolute Beginners

Thomas Blom Hansen, Jason Lengstorf
PHP 7: Real World Application Development

PHP 7: Real World Application Development

Doug Bierer, Altaf Hussain, Branko Ajzele

Publisher Resources

ISBN: 9781593271732Catalog PageErrata