[Pkg-dspam-misc] Bug#553498: Bug#555129: Should not set document root to /var/www - violates the FHS

Stefan Fritsch sf at sfritsch.de
Tue Nov 10 12:13:45 UTC 2009


On Monday 09 November 2009, Manoj Srivastava wrote:
>         Because it violates the FHS -- and it would be at odds with
>  the forthcoming web applications policy. Are you sure access to
>  the document root is unavoidable?
> 

Well, it has the document root compiled in, allows only one document 
root, and doesn't follow symlinks to outside of the document root. 
That makes it pretty hard.

Maybe it is possible to find a solution, but it is not obvious. And it 
would have to be checked for security issues.





More information about the Pkg-dspam-misc mailing list