[dev] Horde admin patches.

Marc G. Fournier scrappy at hub.org
Fri Jan 17 17:58:41 PST 2003


On Sun, 12 Jan 2003, Jan Schneider wrote:

> Zitat von Chris Bowlby <excalibur at hub.org>:
>
> >  Had a need to disable the PHP Shell and SQL Shell options in the horde
> > administration menu, mainly for security reasons as people were
> > attempting
> > to execute SQL queries against the database and such. I thought that
> > having it as an option might be useful, so I made some changes and here's
> > the diff's.
>
> I have no problems applying this patch but I ask myself, why you want to
> give admin access to people who might mess with the shells without knowing
> what they're doing?

I don't know about you, but I have Operators working for me that I want to
have access to create/set permissions on new users, but with whom it would
be asking for trouble giving them shell access to either the database
*or* PHP ... "hey cool, what I can do in here?" springs to mind soooo
quickly :(




More information about the dev mailing list