Note: You are currently viewing documentation for Moodle 3.4. Up-to-date documentation for the latest stable version of Moodle is likely available here: report/security/report security check displayerrors.

report/security/report security check displayerrors

From MoodleDocs
Revision as of 11:29, 7 November 2009 by Frank Ralf (talk | contribs)

If PHP is set to display errors, then anyone can enter a faulty URL causing PHP to give up valuable information about directory structures and so on.

(Can someone add instructions on where to turn this off please).

If you go to Administration > Server > Debugging and set "Debug messages" to NONE and "Display debug messages" to NO you should be on the save side. If this instruction is correct it should be included in the Security Overview report. --Frank Ralf 11:28, 7 November 2009 (UTC)


See also