<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Perfect Knowhow&#187; safe_mode</title>
	<atom:link href="http://www.perfect-knowhow.de/blog/archives/tag/safe_mode/feed" rel="self" type="application/rss+xml" />
	<link>http://www.perfect-knowhow.de/blog</link>
	<description>Findings of an inquisitive mind</description>
	<lastBuildDate>Wed, 04 Jan 2012 18:37:21 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Plesk &#8211; PHP safe_mode DEPRICATED und hinderlich</title>
		<link>http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich</link>
		<comments>http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich#comments</comments>
		<pubDate>Fri, 02 Jul 2010 04:42:44 +0000</pubDate>
		<dc:creator>Manfred</dc:creator>
				<category><![CDATA[Plesk]]></category>
		<category><![CDATA[PHP]]></category>
		<category><![CDATA[safe_mode]]></category>

		<guid isPermaLink="false">http://www.perfect-knowhow.de/blog/archives/148.html</guid>
		<description><![CDATA[Problem Beim Abschicken eines Formulars kommt es zu einer SAFE_MODE Fehlermeldung. Fehlermeldung Warning: mkdir() [function.mkdir]: SAFE MODE Restriction in effect. The script whose uid is 10001 is not allowed to access /var/www/vhosts/domain.de/httpdocs/&#8230;/tmp owned by uid 0 in /root/domain.de/httpdocs/verzeichnis/&#8230;/Cache.php on line 271 Ein phpinfo() zeigt safe_mode=On Hintergrund Gerade bei virtuellen Hostern wird der PHP-Parameter SAFE_MODE gerne auf [...]]]></description>
			<content:encoded><![CDATA[<p><strong><span style="color: #800000;">Problem<br />
</span></strong>Beim Abschicken eines Formulars kommt es zu einer SAFE_MODE Fehlermeldung.</p>
<div style="margin-left: 40px;"><strong>Fehlermeldung</strong></div>
<blockquote>
<div><span style="color: #ff0000;"><strong>Warning</strong>:</span> mkdir() [function.mkdir]: SAFE MODE Restriction in effect. The script whose uid is 10001 is not allowed to access /var/www/vhosts/domain.de/httpdocs/&#8230;/tmp owned by uid 0 in /root/domain.de/httpdocs/verzeichnis/&#8230;/Cache.php on line 271</div>
</blockquote>
<p>Ein phpinfo() zeigt<br />
safe_mode=On</p>
<p><strong>Hintergrund<br />
</strong>Gerade bei virtuellen Hostern wird der PHP-Parameter SAFE_MODE gerne auf ON gesetzt.  Das mag zwar zunächst einmal richtig sein, da man damit den bösen Buben das Leben erschwert, aber im Grunde genommen ist diese Sicherheitseinstellung mehr hinderlich als nützlich.</p>
<ol>
<li>Die Sicherheitseinstellung bringt nur etwas, wenn der Angreifer PHP verwendet. Weicht er aber dann auf z.B. Perl als Skriptsprache aus, dann bringt diese restriktive Einstellung gar nichts.</li>
<li>Ab PHP-Version 5.3.0 ist die PHP-Einstellung SAFE_MODE als DEPRICATED gekennzeichnet, sollte also nicht mehr verwendet werden.</li>
<li>Die SAFE_MODE=ON Einstellung behindert die PHP-Skripte Verzeichnisse zu erstellen und zu benutzen (die angelegten Verzeichnisse werden dem WWW-Server Benutzer zugeordnet und nicht dem Besitzer der PHP-Skripte)</li>
</ol>
<p><strong>Lösung<br />
</strong><br />
PHP-SAFE_MODE als Domainowner deaktivieren.<br />
<a class="thickbox" href="http://www.perfect-knowhow.de/blog/wp-content/uploads/images/server/PLESK_safe_mode_Client.png"><img src="http://www.perfect-knowhow.de/blog/wp-content/uploads/images/server/PLESK_safe_mode_Client.Thumb.png" alt="" hspace="20" vspace="10" width="200" height="110" align="left" /></a><br />
<strong>Anmerkung</strong>: Der Admin eines virtuellen Servers hat die Möglichkeit seinen Kunden das Recht zum <span style="color: #0000ff;"><tt>PHP SAFE_MODE Management</tt></span><tt> </tt>einzuräumen oder auch nicht.<br />
<span style="color: #0000ff;"> </span></p>
<p>Der Domain-Administrator kann unter dem Menüpunkt <tt>WEB HOSTING SETUP </tt>den PHP-Parameter &#8216;save_mode&#8217; für seine Domain verändern (siehe Anmerkung zum virtuellen Server Admin).  <img src="http://www.perfect-knowhow.de/blog/wp-content/uploads/images/server/PLESK_safe_mode_OFF.Thumb.png" border="1" alt="" hspace="20" vspace="10" width="199" height="55" align="left" /><span style="color: #0000ff;"><br />
</span></p>


<div class="shr-bookmarks shr-bookmarks-expand shr-bookmarks-center shr-bookmarks-bg-knowledge">
<ul class="socials">
		<li class="shr-delicious">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=2&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Share this on del.icio.us">Share this on del.icio.us</a>
		</li>
		<li class="shr-digg">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=3&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Digg this!">Digg this!</a>
		</li>
		<li class="shr-facebook">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=5&amp;tags=&amp;ctype=" rel="nofollow" title="Share this on Facebook">Share this on Facebook</a>
		</li>
		<li class="shr-googlebookmarks">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=74&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Add this to Google Bookmarks">Add this to Google Bookmarks</a>
		</li>
		<li class="shr-misterwong">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=298&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Add this to Mister Wong">Add this to Mister Wong</a>
		</li>
		<li class="shr-stumbleupon">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=38&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Stumble upon something good? Share it on StumbleUpon">Stumble upon something good? Share it on StumbleUpon</a>
		</li>
		<li class="shr-technorati">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=&amp;service=10&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Share this on Technorati">Share this on Technorati</a>
		</li>
		<li class="shr-twitter">
			<a href="http://www.shareaholic.com/api/share/?title=Plesk+-+PHP+safe_mode+DEPRICATED+und+hinderlich&amp;link=http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich&amp;notes=Problem%0D%0ABeim%20Abschicken%20eines%20Formulars%20kommt%20es%20zu%20einer%20SAFE_MODE%20Fehlermeldung.%0D%0AFehlermeldung%0D%0A%0D%0AWarning%3A%20mkdir%28%29%20%5Bfunction.mkdir%5D%3A%20SAFE%20MODE%20Restriction%20in%20effect.%20The%20script%20whose%20uid%20is%2010001%20is%20not%20allowed%20to%20access%20%2Fvar%2Fwww%2Fvhosts%2Fdomain.de%2Fhttpdocs%2F...%2Ftmp%20owned%20by%20uid%200%20in%20%2Froot%2Fdomain.d&amp;short_link=&amp;shortener=none&amp;shortener_key=&amp;v=1&amp;apitype=1&amp;apikey=8afa39428933be41f8afdb8ea21a495c&amp;source=Shareaholic&amp;template=%24%7Btitle%7D+-+%24%7Bshort_link%7D&amp;service=7&amp;tags=&amp;ctype=" rel="nofollow" class="external" title="Tweet This!">Tweet This!</a>
		</li>
</ul><div style="clear: both;"></div><div class="shr-getshr" style="visibility:hidden;font-size:10px !important"><a target="_blank" href="http://www.shareaholic.com/?src=pub">Get Shareaholic</a></div><div style="clear: both;"></div></div>

]]></content:encoded>
			<wfw:commentRss>http://www.perfect-knowhow.de/blog/archives/plesk-php-safe_mode-depricated-und-hinderlich/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Served from: www.perfect-knowhow.de @ 2012-02-07 15:57:55 -->
