in reply to Re: Does fatalsToBrowser give too much information to a cracker?
in thread Does fatalsToBrowser give too much information to a cracker?
Another reason why I always remove -w (use warnings) in production systems ... is that I don't want to confront users with errormessages they won't understand or won't be able to do anything against.
How does removing -w aid that? Warnings (even with fatalsToBrowser, since warnings by their very nature aren't fatal) only appear in the server error log, which isn't going to be seen by users.
In deployed code there shouldn't be any warnings generated, but should something of a dubious nature occur surely it's better for the warnings to be available in the log than not at all?
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re: Re: Does fatalsToBrowser give too much information to a cracker?
by doran (Deacon) on Apr 10, 2002 at 22:35 UTC | |
by Smylers (Pilgrim) on Apr 11, 2002 at 14:19 UTC | |
by doran (Deacon) on Apr 11, 2002 at 16:41 UTC |