in reply to Re: Re: Perl/CGI Security Question
in thread Perl/CGI Security Question
I have a weird superstition about using 666 permissions (call me silly, please). No, I'm not a christian, just think it's too much of a coincidence that 666 == pure evil in terms of file permissions :) and the extra 1 doesn't really matter that much... (or does it? thoughts...)
But yes, you are right. Immaterial really, coz you should be running stuff at 700/600/400 with cgiwrap anyway (or equivalent :)
later
cLive ;-)
>Realistically, you could probably get away with mode 644 if you chowned the file to the user the webserver runs as.
644/666 - does it really make a difference if the script's not wrapped? Either way the file's open to abuse by other users on the server...
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re (tilly) 4: Perl/CGI Security Question
by tilly (Archbishop) on Mar 30, 2001 at 22:14 UTC | |
by cLive ;-) (Prior) on Mar 31, 2001 at 06:29 UTC |