Commit ee9aaf17 authored by Ken Coar's avatar Ken Coar
Browse files

Correct some misstatements about the Auth*File directives;

	they're ServerRoot-relative if not absolute.

PR:		1511


git-svn-id: https://svn.apache.org/repos/asf/httpd/httpd/trunk@79709 13f79535-47bb-0310-9956-ffa450edef68
parent 5e494eba
Loading
Loading
Loading
Loading
+15 −9
Changes for docs/manual/mod/mod_auth.html: 15 added lines, 9 removed lines.
Original line number Diff line number Diff line
@@ -38,12 +38,14 @@ textual files.
<strong>Module:</strong> mod_auth<p>

The AuthGroupFile directive sets the name of a textual file containing the list
of user groups for user authentication. <em>Filename</em> is the absolute path
to the group file.<p>
of user groups for user authentication. <em>Filename</em> is the path
to the group file.  If it is not absolute (<EM>i.e.</EM>, if it
doesn't begin with a slash), it is treated as relative to the ServerRoot.
<P>
Each line of the group file contains a groupname followed by a colon, followed
by the member usernames separated by spaces. Example:
<blockquote><code>mygroup: bob joe anne</code></blockquote>
Note that searching large groups files is <em>very</em> inefficient;
Note that searching large text files is <em>very</em> inefficient;
<A HREF="mod_auth_dbm.html#authdbmgroupfile">AuthDBMGroupFile</A> should
be used instead.<p>

@@ -65,13 +67,17 @@ See also <A HREF="core.html#authname">AuthName</A>,

The AuthUserFile directive sets the name of a textual file containing
the list of users and passwords for user
authentication. <em>Filename</em> is the absolute path to the user
file.<p> Each line of the user file file contains a username followed
authentication. <em>Filename</em> is the path to the user
file. If it is not absolute (<EM>i.e.</EM>, if it doesn't begin with a
slash), it is treated as relative to the ServerRoot.
<p> Each line of the user file file contains a username followed
by a colon, followed by the crypt() encrypted password. The behavior
of multiple occurrences of the same user is undefined.<p> Note that
searching user groups files is inefficient; <A
HREF="mod_auth_dbm.html#authdbmuserfile">AuthDBMUserFile</A> should be
used instead.<p>
of multiple occurrences of the same user is undefined.
<p> Note that
searching large text files is <EM>very</EM> inefficient;
<A HREF="mod_auth_dbm.html#authdbmuserfile">AuthDBMUserFile</A> should be
used instead.
<p>

Security: make sure that the AuthUserFile is stored outside the
document tree of the web-server; do <em>not</em> put it in the directory that