Secure Programming for Linux and Unix HOWTO

David Kramer david at thekramers.net
Fri May 21 07:38:54 EDT 2004


On Friday 21 May 2004 7:33 am, Clint M. Sand wrote:
> On Thu, May 13, 2004 at 09:47:34AM -0400, David Kramer wrote:
> > I just found this HOWTO.  It's pretty good!
> >
> > http://www.dwheeler.com/secure-programs/Secure-Programs-HOWTO/
>
> This is a great overall paper, but a lot of it is way outdated. PHP for
> example has had registered_global turned off by default for some time.
>

True.  I recently downloaded a Wiki implemented in PHP, because I'm starting 
to learn to hate TWiki that I'm using now, and it expected all the globals to 
be in place.  I probably could have tweaked it enough to work in about 2 
hours, but... it's just wrong.  The change was made for a good reason.  
Painful transition, but necessary.

----------------------------------------------------------------------------
DDDD   David Kramer         david at thekramers.net       http://thekramers.net
DK KD  
DKK D  You are so clueless that if we stripped you naked, soaked you in
DK KD  clue musk, and dropped you into a field full of horny clues, You
DDDD   still would not have a clue.                                      amq



More information about the Discuss mailing list