HEADS UP for maintainers of web applications

Clement Laforet sheepkiller at cultdeadsheep.org
Sat May 13 17:49:00 UTC 2006


On Fri, May 12, 2006 at 05:58:43PM -0700, Brooks Davis wrote:
> 
> IMO, the best reason for this change (which I've thought was the right
> thing to do for a long time) is that installing things into www/data
> means they are immediately available to the entire world if the webserver
> is up.  That violates our normal principles of not running servers
> without administrator intervention simply because the server happens to
> have been installed.

Unfortunately, IRL, it's not the case. Many apps are installed into 
${PREFIX}/www/data which is default DocumentRoot on apache =< 2.0

clem
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-ports/attachments/20060513/dd6cb432/attachment.pgp


More information about the freebsd-ports mailing list