Forums / Developer / How to secure runcronjobs.php ?!

How to secure runcronjobs.php ?!

Author Message

Selmah Maxim

Wednesday 18 June 2003 6:50:52 am

Hi ..

I cann`t find more info about runcronjobs.php !
When you view it from browser will make all the unapproved items online, that mean the user can submit and make approve for all the Collaboration items !

Should i change the file name, or there are better way ?

thx.

Tony Wood

Thursday 19 June 2003 5:19:17 am

How is this possible? surly the apache rewrite rule will only allow index.php to be run?

Am I missing something?

Tony Wood : twitter.com/tonywood
Vision with Technology
Experts in eZ Publish consulting & development

Power to the Editor!

Free eZ Training : http://www.VisionWT.com/training
eZ Future Podcast : http://www.VisionWT.com/eZ-Future

Selmah Maxim

Saturday 21 June 2003 3:32:40 am

You right, i had forget the .htaccess file :)

And becoz i don`t wanna the url include index.php, i had remove it from FilesMatch tag, and write RewriteRule for runcronjobs.php !

This all testing on localhost, didn`t test it online, maybe i`ll meet another problem, or should i get virtual host ?!

Tony Wood

Saturday 21 June 2003 3:46:06 pm

If you can go virtual host. It works well.

Tony Wood : twitter.com/tonywood
Vision with Technology
Experts in eZ Publish consulting & development

Power to the Editor!

Free eZ Training : http://www.VisionWT.com/training
eZ Future Podcast : http://www.VisionWT.com/eZ-Future

Selmah Maxim

Sunday 22 June 2003 1:10:25 am

So ...

If am going to virtual host then i can stop the runcronjobs.php from the broweser via .htaccess.

Then each time I wanna check the workflows i need to login to the host and run from there, I think much better if i can be done from admin side !

Tony Wood

Sunday 22 June 2003 6:26:38 am

Try running them from an hourly/daily cron job. That way you don't have to give access to users for this.

Tony Wood : twitter.com/tonywood
Vision with Technology
Experts in eZ Publish consulting & development

Power to the Editor!

Free eZ Training : http://www.VisionWT.com/training
eZ Future Podcast : http://www.VisionWT.com/eZ-Future

Selmah Maxim

Sunday 22 June 2003 6:42:18 am

I know that, but what about if there is small module for admin which include 1 php cmd :

exec('php -C runcronjobs.php');

and this module is just for admin !

in this case no need to make cronjob, its will be costom, when admin need to check the submissions just click this link befor .. thats it !

what you think ?!

eZ debug

Timing: Jan 18 2025 10:41:47
Script start
Timing: Jan 18 2025 10:41:47
Module start 'content'
Timing: Jan 18 2025 10:41:48
Module end 'content'
Timing: Jan 18 2025 10:41:48
Script end

Main resources:

Total runtime0.9686 sec
Peak memory usage4,096.0000 KB
Database Queries206

Timing points:

CheckpointStart (sec)Duration (sec)Memory at start (KB)Memory used (KB)
Script start 0.00000.0069 587.7109180.8359
Module start 'content' 0.00690.7650 768.5469580.1563
Module end 'content' 0.77190.1966 1,348.7031337.0547
Script end 0.9685  1,685.7578 

Time accumulators:

 Accumulator Duration (sec) Duration (%) Count Average (sec)
Ini load
Load cache0.00420.4315210.0002
Check MTime0.00150.1572210.0001
Mysql Total
Database connection0.00090.096710.0009
Mysqli_queries0.890091.89142060.0043
Looping result0.00210.21292040.0000
Template Total0.937696.820.4688
Template load0.00220.229120.0011
Template processing0.935496.573820.4677
Template load and register function0.00030.030710.0003
states
state_id_array0.00140.142110.0014
state_identifier_array0.00080.082420.0004
Override
Cache load0.00180.1886320.0001
Sytem overhead
Fetch class attribute can translate value0.00120.124930.0004
Fetch class attribute name0.00100.105780.0001
XML
Image XML parsing0.00080.084030.0003
class_abstraction
Instantiating content class attribute0.00000.0021100.0000
General
dbfile0.00280.2918270.0001
String conversion0.00000.000530.0000
Note: percentages do not add up to 100% because some accumulators overlap

CSS/JS files loaded with "ezjscPacker" during request:

CacheTypePacklevelSourceFiles
CSS0extension/community/design/community/stylesheets/ext/jquery.autocomplete.css
extension/community_design/design/suncana/stylesheets/scrollbars.css
extension/community_design/design/suncana/stylesheets/tabs.css
extension/community_design/design/suncana/stylesheets/roadmap.css
extension/community_design/design/suncana/stylesheets/content.css
extension/community_design/design/suncana/stylesheets/star-rating.css
extension/community_design/design/suncana/stylesheets/syntax_and_custom_tags.css
extension/community_design/design/suncana/stylesheets/buttons.css
extension/community_design/design/suncana/stylesheets/tweetbox.css
extension/community_design/design/suncana/stylesheets/jquery.fancybox-1.3.4.css
extension/bcsmoothgallery/design/standard/stylesheets/magnific-popup.css
extension/sevenx/design/simple/stylesheets/star_rating.css
extension/sevenx/design/simple/stylesheets/libs/fontawesome/css/all.min.css
extension/sevenx/design/simple/stylesheets/main.v02.css
extension/sevenx/design/simple/stylesheets/main.v02.res.css
JS0extension/ezjscore/design/standard/lib/yui/3.17.2/build/yui/yui-min.js
extension/ezjscore/design/standard/javascript/jquery-3.7.0.min.js
extension/community_design/design/suncana/javascript/jquery.ui.core.min.js
extension/community_design/design/suncana/javascript/jquery.ui.widget.min.js
extension/community_design/design/suncana/javascript/jquery.easing.1.3.js
extension/community_design/design/suncana/javascript/jquery.ui.tabs.js
extension/community_design/design/suncana/javascript/jquery.hoverIntent.min.js
extension/community_design/design/suncana/javascript/jquery.popmenu.js
extension/community_design/design/suncana/javascript/jScrollPane.js
extension/community_design/design/suncana/javascript/jquery.mousewheel.js
extension/community_design/design/suncana/javascript/jquery.cycle.all.js
extension/sevenx/design/simple/javascript/jquery.scrollTo.js
extension/community_design/design/suncana/javascript/jquery.cookie.js
extension/community_design/design/suncana/javascript/ezstarrating_jquery.js
extension/community_design/design/suncana/javascript/jquery.initboxes.js
extension/community_design/design/suncana/javascript/app.js
extension/community_design/design/suncana/javascript/twitterwidget.js
extension/community_design/design/suncana/javascript/community.js
extension/community_design/design/suncana/javascript/roadmap.js
extension/community_design/design/suncana/javascript/ez.js
extension/community_design/design/suncana/javascript/ezshareevents.js
extension/sevenx/design/simple/javascript/main.js

Templates used to render the page:

UsageRequested templateTemplateTemplate loadedEditOverride
1node/view/full.tplfull/forum_topic.tplextension/sevenx/design/simple/override/templates/full/forum_topic.tplEdit templateOverride template
7content/datatype/view/ezxmltext.tpl<No override>extension/community_design/design/suncana/templates/content/datatype/view/ezxmltext.tplEdit templateOverride template
8content/datatype/view/ezxmltags/paragraph.tpl<No override>extension/ezwebin/design/ezwebin/templates/content/datatype/view/ezxmltags/paragraph.tplEdit templateOverride template
1content/datatype/view/ezxmltags/line.tpl<No override>design/standard/templates/content/datatype/view/ezxmltags/line.tplEdit templateOverride template
3content/datatype/view/ezimage.tpl<No override>extension/sevenx/design/simple/templates/content/datatype/view/ezimage.tplEdit templateOverride template
1pagelayout.tpl<No override>extension/sevenx/design/simple/templates/pagelayout.tplEdit templateOverride template
 Number of times templates used: 21
 Number of unique templates used: 6

Time used to render debug report: 0.0001 secs