[nycbug-talk] direct file access denied via htaccess
Steve Rieger
steve.rieger
Thu Jun 16 10:12:28 EDT 2005
Francisco Reyes wrote:
> On Wed, 15 Jun 2005, Marc Spitzer wrote:
>
>>> document root /usr/local/www/somedomain
>>> images in
>>> /usr/local/www/somedomain-picse
>>>
>>> PHP would have to send the HTTP requests for the images though..
>>>
>>
>> besides the point, Remember he wants people to see the images so they
>> must be delivered to the far end to be viewed. Once that happens he
>> has absolutly zero control over what happens to the image. Now lsts
>> say he figures out how to prevent them from being cached by the
>> browser it makes no difference
>
>
> I must have missunderstood his goal. I thought his primary goal was to
> prevent people from getting access to an image directly... ie.. to not
> allow someone to do http://domain.com/image.jpg
> _______________________________________________
> % NYC*BUG talk mailing list
> http://lists.nycbug.org/mailman/listinfo/talk
> %Be sure to check out our Jobs and NYCBUG-announce lists
> %We meet the first Wednesday of the month
>
>
>
thats correct i do not want you to be able to get
http://www.somedomain.com.images/image1.jog but when browsing you will
be allowed to go to http://www.somedomain.com/index.html anything below
that can not be directly accessible only if the browser return that.
i am not worried about people trying to grab the images. as they wont
even know that they exist, this site takes input from the user and puts
together a package that includes images and movies. and i do not want
somebody to be able to bookmark one of those movies or images and refer
to it at a later date.
hope i made myself clear.
--
--
Steve Rieger
(212) 804-1131 (Work)
(646) 335-8915 (Cell)
chozrim (aim)
More information about the talk
mailing list