WWWTar - Security Considerations

Please note that WWWTar will be able to send ALL tar files, under the compiled in directory root. If the user attempts to grab a file outside this tree, using "../.." for example, WWWTar will detect this and return an error message.

WWWTar DOES NOT check things such as NCSA's httpd .htaccess files and other such security features. If the tar file requested, is under the defined tree and is readable by the user running WWWTar then that file can be accessed.

The University of Liverpool or myself do not accept any reponsibility for files which may have been compromised, using this software. If you have any doubts, or don't understand how this software works, then don't use it.

Back up to index or on to Sites Running WWWTar.