report/security/report security check displayerrors: diferència entre les revisions
De MoodleDocs
Cap resum de modificació |
Cap resum de modificació |
||
Línia 3: | Línia 3: | ||
(Can someone add instructions on where to turn this off please). | (Can someone add instructions on where to turn this off please). | ||
: If you go to ''Administration > Server > Debugging'' and set "Debug messages" to NONE and "Display debug messages" to NO you should be on the save side. --[[User:Frank Ralf|Frank Ralf]] 11:28, 7 November 2009 (UTC) | : If you go to ''Administration > Server > Debugging'' and set "Debug messages" to NONE and "Display debug messages" to NO you should be on the save side. If this instruction is correct it should be included in the Security Overview report. --[[User:Frank Ralf|Frank Ralf]] 11:28, 7 November 2009 (UTC) | ||
Revisió del 11:29, 7 nov 2009
If PHP is set to display errors, then anyone can enter a faulty URL causing PHP to give up valuable information about directory structures and so on.
(Can someone add instructions on where to turn this off please).
- If you go to Administration > Server > Debugging and set "Debug messages" to NONE and "Display debug messages" to NO you should be on the save side. If this instruction is correct it should be included in the Security Overview report. --Frank Ralf 11:28, 7 November 2009 (UTC)
See also
- Using Moodle Security and Privacy forum
- Using upgrade to 1.9.2 has PHP setting display_errors message Moodle forum discussion