On , 9 Jun 2003 23:20 +0300, KobrAs wrote: > > inainte de toate editeaza in httpd.conf optiunea "AllowOverride" si > pune "AllowOverride All"
Configurare Apache in stil cargo-cult! > creaza un fisier .htaccess in director-ul care vrei sa-l restrictionezi > adauga liniile : > ' > AuthUserFile /calea/catre/userfile/.user.pwd > AuthGroupFile /dev/null/ > AuthName "Autorizated Users Only" > AuthType Basic > <Limit GET POST PUT> > require valid-user > </Limit> Configurare Apache in stil cargo-cult si rom-english! Ia vezi matale ce zic doacele Apache referitor la Limit: "Access controls are normally effective for all access methods, and this is the usual desired behavior. In the general case, access control directives should not be placed within a <Limit> section." > dupa asta dute in director-ul unde va fi fisier-ul cu "userlist" scrie "htpass -c > .user.pwd username" > after that chmod 755 .user.pwd Linux cargo-cult! De ce e nevoie ca fisierul de parole sa fie chmod 755? Nu e mai bine sa fie detinut de root ca user, apache/nobody/grupul sub care ruleaza Apache ca grup, citibil/modificabil de catre root, citibil de catre grupul sub care ruleaza Apache-ul, neaccesibil pentru restul?
