thttpd on nslu2 - security
- Hi, this page:
explains how to set up the thttpd.
In the conf-file I have this line:
but I notice at the thttpd homepage found here
that this option is more secure
meaning that if its enabled the website directory is the only directory
a visitor can "see".
(As it works the default errorpage comes up if ones mispell the url.)
But when I tried ALWAYS_CHROOT my sever is dead.I assume this have
something to do with the nslu2 itself since at the httpd homepage the
option is mentioned.
So, finally the question is: should I worry and is it possible to
configure it on nslu2 with ALWAYS_CHROOT, if this is something to care
or have I completly misunderstood something here =)?.
sorry my English is not English hope you understand me =)