Windows Server 2008 Forum: securing the php mysql password? - Windows Server 2008 Forum

Jump to content

Hello Guest

Windows Server 2008 Forum is a free help and support community. If have problems installing Windows Server 2008 or just want to interact with other Windows 2008 users then Windows Server 2008 Forum is the place for you. If this is your first visit to Windows Server 2008 Forum be sure to check out Help. You have to register before you can post. Registration to Windows Server 2008 Forum is free so why not register today?
If you want to browse the site a bit before you register you can start viewing messages by selecting the forum that you want to visit from the selection below.

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

securing the php mysql password? Rate Topic: -----

#1 User is offline   petter7252 Icon

  • Member
  • PipPip
  • Group: Members
  • Posts: 26
  • Joined: 19-February 08

Posted 06 Mar 2008 - 04:23 AM

So i have been searching for a way to secure the mysql password in the php.ini, but i can only find difficult ways on how to do it.

Anyone got an easy step by step on how to make the mysql password in the php.ini file?

I have heard that hash is the easiest way to go, but how does it comunicate with the mysql sever with just random signs? is there more i gotta do for the hash to work?
0

#2 User is offline   BSchwarz Icon

  • Administrator
  • Icon
  • Group: Administrators
  • Posts: 483
  • Joined: 31-October 09
  • Location: Joliet, IL, U.S.A.

Posted 06 Mar 2008 - 05:14 PM

I've never used php.ini to store mysql user info and password. php.ini is not accessible uless you have php setup in the webroot so that should be secure in itself. If you plan on sharing the box with other users that have admin access, not a good idea, then it would be a good idea to encrypt it.
I have never done it so I can't help with this.
0

#3 User is offline   petter7252 Icon

  • Member
  • PipPip
  • Group: Members
  • Posts: 26
  • Joined: 19-February 08

Posted 07 Mar 2008 - 11:31 AM

Ok, so if i got it in the c:/windoes there is no way that they can get it?
0

#4 User is offline   BSchwarz Icon

  • Administrator
  • Icon
  • Group: Administrators
  • Posts: 483
  • Joined: 31-October 09
  • Location: Joliet, IL, U.S.A.

Posted 07 Mar 2008 - 04:20 PM

No. Only way they could get it is if they are admin on the server.
0

#5 User is offline   petter7252 Icon

  • Member
  • PipPip
  • Group: Members
  • Posts: 26
  • Joined: 19-February 08

Posted 08 Mar 2008 - 01:15 PM

ok, thanks.
0

Page 1 of 1
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users