Received: (from majordom@localhost) by hyperreal.org (8.8.5/8.8.5) id KAA20566; Mon, 1 Sep 1997 10:50:33 -0700 (PDT) Received: from valis.worldgate.com (marcs@valis.worldgate.com [198.161.84.2]) by hyperreal.org (8.8.5/8.8.5) with ESMTP id KAA20542 for ; Mon, 1 Sep 1997 10:50:25 -0700 (PDT) Received: from localhost (marcs@localhost) by valis.worldgate.com (8.8.7/8.8.7) with SMTP id LAA24667 for ; Mon, 1 Sep 1997 11:50:24 -0600 (MDT) Date: Mon, 1 Sep 1997 11:50:24 -0600 (MDT) From: Marc Slemko To: Apache Developer ML Subject: Re: Suggestion for the Options directive in Apache (fwd) In-Reply-To: <199709010805.KAA07834@en1.engelschall.com> Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: new-httpd-owner@apache.org Precedence: bulk Reply-To: new-httpd@apache.org Use IncludesNOEXEC and include virtual. It doesn't quite work right yet, but it should. On Mon, 1 Sep 1997, Ralf S. Engelschall wrote: > > ----- Forwarded message from Mike Barcroft ----- > >From vogon!mail.tct.net!mike Thu Aug 21 00:18:18 1997 > Message-Id: <199708202140.RAA23719@mail.tct.net> > From: "Mike Barcroft" > Date: Wed, 20 Aug 1997 17:40:59 +0000 > Subject: Suggestion for the Options directive in Apache > Reply-to: mike@tct.net > > Hello Ralf, > > I hope I'm sending this to the right programmer (your name seems to > be in the modules for this suggestion). In the Apache HTTPd > server the "Options directive" has a option to allow includes and > disallow execution of cgi's or commands (IncludesNOEXEC). I think a > option like IncludesNOCMD which would allow CGI's, but not commands, > would be a great addition for the next release of Apache HTTPd. > > Best Regards, > Mike Barcroft, > mike@tct.net. > ----- End of forwarded message from Mike Barcroft ----- > > not ack. > Ralf S. Engelschall > rse@engelschall.com > www.engelschall.com >