REGISTER_GLOBALS的安全预防措施 [英] security precautions on REGISTER_GLOBALS

查看:70
本文介绍了REGISTER_GLOBALS的安全预防措施的处理方法,对大家解决问题具有一定的参考价值,需要的朋友们下面随着小编来一起学习吧!

问题描述

在PHP 4.4中,什么是最安全的服务器配置,同时保持

REGISTER_GLOBALS?

解决方案

< blockquote>>在PHP 4.4中,什么是最安全的服务器配置,同时保持


> REGISTER_GLOBALS on?



完全断开网络连接?

关闭电源?


周五,2007年1月26日01:54:27 +0100,Gordon Burditt

< go *********** @ burditt.orgwrote:


>在PHP 4.4中,什么是最安全的服务器配置,同时保持开启REGISTER_GLOBALS?



完全断开网络连接?

关机?



该死的,我打算说禁止使用所有功能,但实际上,

断电似乎最安全。更少的火灾危险,并且

硬件没有磨损作为附加奖励...

-

Rik Wasmus


1月25日下午5:05,Rik< luiheidsgoe ... @ hotmail.comwrote:


周五, 2007年1月26日01:54:27 +0100,Gordon Burditt


< gordonb.zi ... @ burditt.orgwrote:


在PHP 4.4中,什么是最安全的服务器配置,同时保持

REGISTER_GLOBALS?


完全断开网络连接?

关机?该死的,我打算说不允许使用所有功能,但实际上,



关机似乎最安全。更少的火灾危险,并且

硬件没有磨损作为附加奖励...

-

Rik Wasmus



并且认为我在考虑用户验证方案:要求每个客户接受
由您亲自面试,然后告诉他们

表示可能有错误的行为。


可能工作太多了。


-

柯蒂斯


In PHP 4.4, what is the most secure server configuration while keeping
REGISTER_GLOBALS on?

解决方案

>In PHP 4.4, what is the most secure server configuration while keeping

>REGISTER_GLOBALS on?

Completely disconnected from the network?
Powered off?


On Fri, 26 Jan 2007 01:54:27 +0100, Gordon Burditt
<go***********@burditt.orgwrote:

>In PHP 4.4, what is the most secure server configuration while keeping
REGISTER_GLOBALS on?


Completely disconnected from the network?
Powered off?

Damn, I was going to say "disallow the use of all functions", but indeed,
powered off seems safest. Less firehazard, and no wear and tear on the
hardware as added bonus...
--
Rik Wasmus


On Jan 25, 5:05 pm, Rik <luiheidsgoe...@hotmail.comwrote:

On Fri, 26 Jan 2007 01:54:27 +0100, Gordon Burditt

<gordonb.zi...@burditt.orgwrote:

In PHP 4.4, what is the most secure server configuration while keeping
REGISTER_GLOBALS on?

Completely disconnected from the network?
Powered off?Damn, I was going to say "disallow the use of all functions", but indeed,

powered off seems safest. Less firehazard, and no wear and tear on the
hardware as added bonus...
--
Rik Wasmus

And to think I was thinking of the user verification scheme: require
every client to be personally interviewed by you, and then tell them
that there''s probably buggy behavior.

Maybe too much work, though.

--
Curtis


这篇关于REGISTER_GLOBALS的安全预防措施的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持IT屋!

查看全文
登录 关闭
扫码关注1秒登录
发送“验证码”获取 | 15天全站免登陆