Security in TYPO3 by accessing File System -
i've readen book (in german) named cookbook typo3 , typoscript
http://www.amazon.de/typo3-typoscript-kochbuch-typo3-programmierung/dp/3446410465
in book autor suggest in regards security typo3_src directory should moved out of root-directory of web-server, didn't why should that?
can explain me reason of suggestion? vulnerablity exist if not move it?
many thanks
you should not make public doesn't need be.
not making directory publicly accessible reduces 1 possible attack vector. might possible file in directory can made things bad when called directly.
it is important if want secure system as possible.
Comments
Post a Comment