Admin/login page in its own directory Admin/login page in its own directory
 

News:

cpg1.5.48 Security release - upgrade mandatory!
The Coppermine development team is releasing a security update for Coppermine in order to counter a recently discovered vulnerability. It is important that all users who run version cpg1.5.46 or older update to this latest version as soon as possible.
[more]

Main Menu

Admin/login page in its own directory

Started by meimeiriver, April 11, 2006, 06:47:10 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

meimeiriver

I would like to see admin.php (and relate) pages moved to their own directory, so that I can add an extra layer of security using a server based directory protection AUTH mechanism (say, and Apache AuthType Basic on that dir). Now that admin stuff is the the "root" too, I cannot apply such protection.

Nibbler

Apache's basic authentication is less secure than Coppermine's own authentication. I'm pretty sure you can set it up for individual files aswell as whole directories, but several files are shared by both users and admins making this problematic.