security - htaccess Authentication with PHP -


I am working on the current website, I have a directory of files for users that will actually download other than ambiguity There is some other security method;)

I was thinking that there is a way to supply login information via PHP through HTAC, though the user was logging in.

Alternatively, if anybody knows a better way to protect the user from using PHP, it is also acceptable. All of my googling changes "Just use htaccess" which is not really helpful, as is the view from a non-savvy user, they must log in every time they use the website.

The best estimate of my PHP specials is that they store the files above the web root, then copy them temporarily into the web-accessible folder, but it is highly Disabled and I can not think of any method to remove them after the download has ended.

Note: I do not have a server running on it and does not have ssh access.

If the files are not very large (GB) then you can always use the file for download In this mode you can check user's athlete, and if the output file content is fine for the user, then send it to the login page.

With this method, you can keep your files with protected (.htaccess) so that you can ensure that whatever is not authenticated it can reach them.


Comments

Popular posts from this blog

python - Overriding the save method in Django ModelForm -

html - CSS autoheight, but fit content to height of div -

qt - How to prevent QAudioInput from automatically boosting the master volume to 100%? -