From 4def63340db784c23665d4430f29eb2aab50bb7b Mon Sep 17 00:00:00 2001 From: Tawmu Date: Tue, 5 Mar 2024 13:32:16 +0000 Subject: [PATCH] Disables some PHP functions that are typically used for nefarious things. --- phpfpm/rootfs/nhsla/setup/php.ini | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/phpfpm/rootfs/nhsla/setup/php.ini b/phpfpm/rootfs/nhsla/setup/php.ini index 07f28cc..81bfb53 100644 --- a/phpfpm/rootfs/nhsla/setup/php.ini +++ b/phpfpm/rootfs/nhsla/setup/php.ini @@ -307,7 +307,7 @@ serialize_precision = -1 ; This directive allows you to disable certain functions for security reasons. ; It receives a comma-delimited list of function names. ; http://php.net/disable-functions -disable_functions = pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals, +disable_functions = highlight_file,show_source,phpinfo,shell_exec,exec,passthru,system,proc_open,popen,parse_ini_file,pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wifcontinued,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_get_handler,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,pcntl_async_signals, ; This directive allows you to disable certain classes for security reasons. ; It receives a comma-delimited list of class names.