LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 08-29-2005, 03:25 AM   #1
Fr33B5D
Member
 
Registered: Aug 2005
Location: France
Posts: 43

Rep: Reputation: 15
Lightbulb Disable Dangerous Phpinfo()


Dear friends,
I am going to dedicate some parts of my hard disk to a friend of mine but I wish to know how I can disable running phpinfo() at their space.
This is important because they can extract a lot of valuable information regarding web server machine.
 
Old 08-29-2005, 03:47 AM   #2
spooon
Senior Member
 
Registered: Aug 2005
Posts: 1,755

Rep: Reputation: 51
AFAIK phpinfo() is not "magical". All the information is normal web server environment stuff that can otherwise be easily obtained through other functions in PHP, and phpinfo() just happens to be a convenient way to display that information for debugging or whatever. Even if you could disable phpinfo(), it does not hide the underlying information in any way.
 
Old 08-29-2005, 07:29 AM   #3
slacky
Member
 
Registered: Feb 2004
Location: USA
Distribution: Debian
Posts: 174

Rep: Reputation: 16
spooon is right as far as phpinfo() not revealing things you cannot get to in other ways.

However, there is a disable_functions php.ini option that will allow you to disable any functions you see fit:
http://www.php.net/manual/en/feature...able-functions
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Not exactly a newbie, but still dangerous jhenager LinuxQuestions.org Member Intro 2 09-19-2005 02:51 PM
is this dangerous? Kendo1979 Linux - Security 3 05-17-2005 11:31 PM
is it dangerous to disable acpi in mandrake? vehakki Linux - Laptop and Netbook 3 03-18-2005 05:00 PM
GD not showing up on phpinfo (mdk 10 AMD64) InfInIte Mandriva 1 04-30-2004 09:18 AM
phpinfo() saravanan1979 Programming 5 01-14-2002 12:23 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 10:36 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration