Actions
Feature #33722
closedDisable Access via /typo3/install/ via a localconf setting
Status:
Rejected
Priority:
Could have
Assignee:
-
Category:
Install Tool
Target version:
-
Start date:
2012-02-06
Due date:
% Done:
0%
Estimated time:
PHP Version:
Tags:
Complexity:
Sprint Focus:
Description
Hi
Most of the times, after a first install, the external access to the install tool via http://example.com/typo3/install/ isn't used anymore.
The install tool prominently displays this comment:
For additional security, the /typo3/install/ folder can be renamed, deleted, or password protected with a .htaccess file.
But what if you don't have access to your core, share your core with other instances or simply don't want to delete the /typo3/install/ folder after each core update?
Maybe it would make sense to offer an option in $TYPO3_CONF_VARS to turn of that external access. It would definiely feel safer. Or would that just be "illusion of safety"?
Urs
Actions