1. Apache has a configuration file saying what directories it will access 
and and any module that allows you to access files outside those 
directories is a security hole. Does axkit check? I don't see that file:// 
uris have any place in a dicument served by http.

2. However you look at it, the uri '/foo/bar/baz' on a document hosted on 
www.myhost.com should resolv to http://www.myhost.com/foo/bar/baz and if 
axkit does not do this then it is not behaving properly.

3. If I do this and axkit behaves properly then I need only make one 
symlink from docroot to the real dtd directory, configure apache to allow 
symlinks for that directory and all my dtds work.


Why is this so difficult?

John

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to