bikesbuiltbetter Posted November 29, 2008 Share Posted November 29, 2008 Hello All I am setting up oscommerce-2.2rc2a and i am confussed about the contribution register_globals_v1.5 my server has Register Globals Disabled already does this mean that sessions are being stored inthe /tmp directory? I am on a shared server is this a secuity risk? Will this contribution help me with site wide application? I would appreciate any insight some of you more experanced OSC users may have as i hope to have mine up and running and secure as soon as possible Any help would be greatly appriciated befor i continue to add further updates to customize to my site i would like to have the nuts and bolts secure and functioning the best way possible. Thanks for your help Chuck BikesBuiltBetter.com Link to comment Share on other sites More sharing options...
GemRock Posted November 29, 2008 Share Posted November 29, 2008 the version of osc, ie, oscommerce-2.2rc2a, is compatible with register globals ON or OFF, in other words, you can forget about this issue and no need to install any 'fix'. Sessions is always better stored in the database, which is set in the configure.php (the last line, fill in 'mysql', rather than leave it blank. Ken commercial support - unProtected channel, not to be confused with the forum with same name - open to everyone who need some professional help: either PM/email me, or go to my website (URL can be found in my profile). over 20 years of computer programming experience. Link to comment Share on other sites More sharing options...
bikesbuiltbetter Posted November 29, 2008 Author Share Posted November 29, 2008 Thanks Ken thats what i thought but i wasnt sure. Link to comment Share on other sites More sharing options...
WoodsWalker Posted November 29, 2008 Share Posted November 29, 2008 What is the risk of storing the sessions in the /tmp directory? Just wondering, because I've heard so many people say so... Link to comment Share on other sites More sharing options...
Guest Posted November 29, 2008 Share Posted November 29, 2008 What is the risk of storing the sessions in the /tmp directory? Just wondering, because I've heard so many people say so... None that I know of, it does not have to be called tmp. Link to comment Share on other sites More sharing options...
Recommended Posts
Archived
This topic is now archived and is closed to further replies.