in reply to Re: FastCGI and mod_perl compared
in thread FastCGI and mod_perl compared
If Apache has been set up by someone who isn't a complete retard it will be suiding to an unprivilidged user the moment it gets a connection request. On most systems this user will be the 'nobody' or 'www-data' user.
Probably the best you could do with one of those accounts is read the source code to the CGI scripts, and if your scripts are programmed correctly then you are safe.
In short, mod_perl is secure, just like mod_ anything is. The memory leaks are another story.
____________________
Jeremy
I didn't believe in evil until I dated it.
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Re: Re: FastCGI and mod_perl compared
by blakem (Monsignor) on Aug 27, 2001 at 13:00 UTC |