[TYPO3] naw_securedl

Costa Papadopoulo copa at hol.gr
Sat May 3 19:37:05 CEST 2008


"Xavier Perseguers" <typo3 at perseguers.ch> schrieb
> Hi,
>> I also have a .htaccess in the INTRA folder, which contains:
>> <FilesMatch 
>> "\.([Pp][Dd][Ff]|[Jj][Pp][Ee]?[Gg]|[Gg][Ii][Ff]|[Pp][Nn][Gg]|[Dd][Oo][Cc]|[Pp][Dd][Ff]|[Xx][Ll][Ss]|[Rr][Aa][Rr]|[Tt][Gg][Zz]|[Tt][Aa][Rr]|[Gg][Zz])">
>>     Order deny,allow
>>     Deny from all
>>     Allow from none
>> </FilesMatch>
>
> Allow from none brings nothing!

Didn't know that. I took the example .htaccess from the extension.

>> But the problem is, that the .htaccess file seems to be ignored.
>> I have a file test.txt in the fileadmin/INTRA/ folder.
>> When I call it like www.example.com/fileadmin/INTRA/test.txt it is 
>> displayed even with no BE Session and all cookies deleted.
>>
>> What do I miss?
>> Whats wrong with my settings?
>
> I think you missed the "AllowOverride" setting in your Apache virtual host 
> definition. Please read the official documentation:
>
> http://httpd.apache.org/docs/2.0/howto/htaccess.html

I will check that. Thanks

> > Sorry I forgot to ask which  user:group  and which right
> > the .htaccess file needs to have to be most secure..
> > Is it r--r--r-- or r-x-r----- or whatever should it be?
>
[...]>
> Regards
> Xavier Perseguers

Thanx

and regards costa 




More information about the TYPO3-english mailing list