Torna indietro   Serverplan Forum > Hosting > Pannello di controllo Cpanel - Linux

Rispondi
 
LinkBack Strumenti discussione Modalità visualizzazione
  #1 (permalink)  
Vecchio 20-05-2005, 20.36.30
Junior Member
 
Data registrazione: 19-05-2005
Messaggi: 3
guardiano is on a distinguished road
Invia un messaggio via MSN a guardiano
Predefinito path

in merito allo script in php delle statistiche avrei bisogno di sapere qual ? il path completo delle immagini png da inserire nello script visto che funziona tutto tranne la visualizzazione delle immagini.

grazie.
Rispondi citando
  #2 (permalink)  
Vecchio 23-05-2005, 09.23.39
Administrator
Amministratore
 
Data registrazione: 12-09-2002
Messaggi: 3,422
serverplan ha disabilitato la reputazione
Predefinito

Salve

a quale script si riferisce?
Rispondi citando
  #3 (permalink)  
Vecchio 23-05-2005, 11.44.00
Junior Member
 
Data registrazione: 19-05-2005
Messaggi: 3
guardiano is on a distinguished road
Invia un messaggio via MSN a guardiano
Predefinito

<?php
/*
dv at josheli.com

Proxy for viewing Awstats outside of cpanel. I assume no liability.


1 out of 3 people ask me if it's "safe" to have their username and password
in this file. Here's my answer:

When you signed up with your web hosting provider, they probably provided
you with an email with your login/password, right? Do you ever use FTP
with your site? Do you login to your mail server, to hotmail, to yahoo, to
anywhere else? When you log in to cpanel or WHM, do you do it through SSL
or not? Have you installed any other web software like osCommerce or phpBB
or any other script?

In all cases, your user/password is either sent through dozens of
computers in plain text and is sitting in someone else's harddrive or
database, or is stored in plain text on some file on your webserver. You
are never safe.

So, if someone wants to steal ANY user/password, it's pretty easy. In
fact, probably half a dozen people could look at any password of yours
right now. But to answer what i think you're specifically asking about about
this script, no, not just anyone can find out the user/pass.

And besides that, there are other precautions you could take. Ask around.
*/

$user = 'username';//your cpanel username
$pass = 'password';//your cpanel password
$domain = 'mydomain.com';//do not include 'http://' or 'www.'

/*
Domain of the stats you wish to view, e.g. a subdomain like "cvs.mydomain.com".
If left blank, defaults to the "domain" above
Another option is to set the "config" parameter in the url of your browser, e.g.:
http://www.domain.com/awstats.php?config=sub.domain.com
*/
$config_domain = '';

/*
If you don't know what you're doing, set $dynamic_images equal
to TRUE, and don't worry about the $image_directory variable.
Otherwise,
- Normally, this script will load images by proxy, i.e. awstats.php
is called for each <img> tag and will send the correct
image to the browser. This is not the way the web is designed
to work. So, if you wish to improve performance and lower
bandwidth, you can:
1. Set $dynamic_images to FALSE
2. Create an image directory in your webroot
3. Copy all of awstats image sub-directories to this new directory
4. Point the $image_directory variable to your new directory
You will get all the benefits of cached, static images.
In order to get the Awstats images and their directories, you will
probably need to download an awstats distribution from
awstats.sourceforge.net. The final layout will probably look like this:

awstats_imagedir/
browser/
clock/
cpu/
flags/
mime/
os/
other/

Under each of those sub-directories will be dozens of .png files.
*/

$dynamic_images = false;
$image_directory = './awstats_images/';

//lame attempt to combat referrer spam
$spam_words = array('mortgage', 'sex', 'porn', 'cock', 'slut', 'facial', 'loving', 'gay', '.ro');


/***********
NO NEED TO TOUCH ANYTHING BELOW HERE
************/

//retrieves the file, either .pl or .png
function get_file($fileQuery)
{
global $user, $pass, $domain;
return file_get_contents("http://$user:$pass@$domain:2082/".$fileQuery);
}

$requesting_image = (strpos($_SERVER['QUERY_STRING'],'.png')===false)?false:true;

if($dynamic_images && $requesting_image) //it's a .png file...
{
if(!is_dir($image_directory))
{
exit;
}
$fileQuery = $_SERVER['QUERY_STRING'];
}
elseif(empty($_SERVER['QUERY_STRING']))//probably first time to access page...
{
if(empty($config_domain))
{
$config_domain = $domain;
}
$fileQuery = "awstats.pl?config=$config_domain";
}
else //otherwise, all other accesses
{
$fileQuery = 'awstats.pl?'.$_SERVER['QUERY_STRING'];
}

$file = get_file($fileQuery);

//check again to see if it was a .png file
//if it's not, replace the links
if(!$requesting_image)
{
$file = str_replace('awstats.pl', basename($_SERVER['PHP_SELF']), $file);

if($dynamic_images)
{
$imgsrc_search = '="/images';
$imgsrc_replace = '="'.basename($_SERVER['PHP_SELF']).'?images';
}
else
{
$imgsrc_search = 'src="/images/awstats/';
$imgsrc_replace = 'src="'.$image_directory;
}

$file = str_replace($imgsrc_search, $imgsrc_replace, $file);
$file = str_replace($spam_words, 'SPAM', $file);
}
else //if it is a png, output appropriate header
{
header("Content-type: image/png");
}

//output the file
echo $file;
?>




questo ? lo script.
alla variabile $image_directory dovrei attribuire il percorso delle immagini sul server che io non conosco.
Rispondi citando
  #4 (permalink)  
Vecchio 23-05-2005, 11.47.02
Administrator
Amministratore
 
Data registrazione: 12-09-2002
Messaggi: 3,422
serverplan ha disabilitato la reputazione
Predefinito

il path ? /home/username/tmp/ qui trova tutti i file delle statistiche.
Rispondi citando
Rispondi

Strumenti discussione
Modalità visualizzazione

Regole di scrittura
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is Attivato
Le faccine sono Attivato
Il codice [IMG] è Attivato
Il codice HTML è Disattivato
Trackbacks are Attivato
Pingbacks are Attivato
Refbacks are Attivato


Discussioni simili
Discussione Autore discussione Forum Risposte Ultimo messaggio
<JOOMLA> "Session save path Non configurato, Non Forme Uniche PHP 4 26-10-2006 19.21.28
path di imagemagick dizplay PHP 7 28-02-2006 16.16.20
Path completo file di log Davide2 Pannello di controllo Cpanel - Linux 4 15-12-2005 23.59.45
XSS and full path disclosure in PhpBB 2.0.8 serverplan Vulnerabilità 0 17-07-2004 01.23.07
include e path in php mjfan80 PHP 0 20-03-2004 12.10.05


Tutti gli orari sono GMT +1. Adesso sono le 06.47.53.


Powered by vBulletin versione 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.1.0
Traduzione italiana : www.vbulletin.it