Summary of the effects of PHP open Safe_mode mode on functions _php tutorial

Source: Internet
Author: User
In PHP safe_mode mode for Safe mode, open can give the website strong security, but at the same time will also affect some functions, the following we summarized the Safe_mode mode for those specific functions have an impact, there is a need for friends to refer to.

Function Name Restrictions

Dbmopen () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.
Dbase_open () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.

Filepro () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.
Filepro_rowcount () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.
Filepro_retrieve () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.

ifx_* Sql_safe_mode limit, (! = Safe Mode)
ingres_* Sql_safe_mode limit, (! = Safe Mode)
mysql_* Sql_safe_mode limit, (! = Safe Mode)
Pg_loimport () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.
Posix_mkfifo () checks if the directory being manipulated has the same UID (owner) as the script being executed.

Putenv () follows the Safe_mode_protected_env_vars and Safe_mode_allowed_env_vars options for INI settings. Please refer to the documentation for the putenv () function.
Move_uploaded_file () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.

ChDir () checks whether the directory being manipulated has the same UID (owner) as the script being executed. The
DL () function is disabled in safe mode.
Backtick operator This function is disabled in safe mode.
Shell_exec () (functionally and backticks functions are the same) This function is disabled in safe mode.
Exec () can only perform operations under the directory set by the Safe_mode_exec_dir. For some reason, you cannot currently use the path of an executable object ... Escapeshellcmd () will be applied to the parameters of this function. The
System () can only perform operations under the directory set by Safe_mode_exec_dir. For some reason, you cannot currently use the path of an executable object ... Escapeshellcmd () will be applied to the parameters of this function.
PassThru () can only be performed under the directory set by Safe_mode_exec_dir. For some reason, you cannot currently use the path of an executable object ... Escapeshellcmd () will be applied to the parameters of this function.
Popen () can only be performed under the directory set by Safe_mode_exec_dir. For some reason, you cannot currently use the path of an executable object ... Escapeshellcmd () will be applied to the parameters of this function.
fopen () checks whether the directory being manipulated has the same UID (owner) as the script being executed.
MkDir () checks whether the directory being manipulated has the same UID (owner) as the script being executed.
RmDir () checks whether the directory being manipulated has the same UID (owner) as the script being executed.
Rename () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed.

Unlink () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed.
Copy () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed. (on source and target)
CHGRP () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.
Chown () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed.
chmod () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Also, you cannot set SUID, SGID, and sticky bits
Touch () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed.
Symlink () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed. (Note: test target only)
Link () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed. (Note: test target only)

Apache_request_headers () in Safe mode, headers that start with "authorization" (case-sensitive) will not be returned.
Header () in Safe mode, if Www-authenticate is set, the UID of the current script is added to the realm of the header.
Php_auth variables in safe mode, variables Php_auth_user, PHP_AUTH_PW, and Php_auth_type are not available in $_server. However, you can still use Remote_user to get the user name. (Note: PHP 4.3.0 only works later)

Highlight_file (), Show_source () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed. (Note that only valid after 4.2.1 version)
Parse_ini_file () checks whether the file or directory being manipulated has the same UID (owner) as the script being executed. Checks whether the directory being manipulated has the same UID (owner) as the script being executed. (Note that only valid after 4.2.1 version)

Set_time_limit () does not work in safe mode.
Max_execution_time does not work in safe mode.
Mail () in Safe mode, the fifth parameter is masked

http://www.bkjia.com/PHPjc/629057.html www.bkjia.com true http://www.bkjia.com/PHPjc/629057.html techarticle in PHP safe_mode mode for Safe mode, open can give the site strong security, but also will have some functions, the following we summarized the Safe_mode mode for those specific functions ...

  • Related Article

    Contact Us

    The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

    If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

    A Free Trial That Lets You Build Big!

    Start building with 50+ products and up to 12 months usage for Elastic Compute Service

    • Sales Support

      1 on 1 presale consultation

    • After-Sales Support

      24/7 Technical Support 6 Free Tickets per Quarter Faster Response

    • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.