Results 1 to 4 of 4

Hybrid View

  1. #1
    Join Date
    Oct 2009
    Posts
    19
    Plugin Contributions
    0

    Default Can I delete phpinfo.php for PCI Compliance

    Please can anyone tell me if I need phpinfo.php in the root directory or in myadmin/phpinfo.php?

    Apparently its the last problem with security and PCI Compiance.

    Cheers

  2. #2
    Join Date
    Jan 2004
    Posts
    66,450
    Plugin Contributions
    81

    Default Re: Can I delete phpinfo.php for PCI Compliance

    A proper clean install of Zen Cart does NOT have a "phpinfo.php" in the root or admin folders.
    So, if you have one, then you added it yourself.
    As far as Zen Cart is concerned, you don't need such a file.
    .
    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

  3. #3
    Join Date
    Mar 2004
    Posts
    16,042
    Plugin Contributions
    5

    Default Re: Can I delete phpinfo.php for PCI Compliance

    Yes you can remove it or rename it,

    you just wont be able to use the serverinfo in tools tab
    Zen cart PCI compliant Hosting

  4. #4
    Join Date
    Jan 2004
    Posts
    66,450
    Plugin Contributions
    81

    Default Re: Can I delete phpinfo.php for PCI Compliance

    Quote Originally Posted by Merlinpa1969 View Post
    you just wont be able to use the serverinfo in tools tab
    Clarification: The "server info" option in the admin "Tools" menu doesn't use a "phpinfo.php" file to get its information.

    Zen Cart doesn't need or use a "phpinfo.php" file in the admin or catalog/storefront regular operations.
    .
    Zen Cart - putting the dream of business ownership within reach of anyone!
    Donate to: DrByte directly or to the Zen Cart team as a whole

    Remember: Any code suggestions you see here are merely suggestions. You assume full responsibility for your use of any such suggestions, including any impact ANY alterations you make to your site may have on your PCI compliance.
    Furthermore, any advice you see here about PCI matters is merely an opinion, and should not be relied upon as "official". Official PCI information should be obtained from the PCI Security Council directly or from one of their authorized Assessors.

 

 

Similar Threads

  1. SecurityMetrics PCI compliance fail: /password_forgotten.php
    By MickeyDora in forum General Questions
    Replies: 2
    Last Post: 18 May 2011, 07:10 AM
  2. MSQL and PHP update - PCI Compliance
    By wapnoj in forum General Questions
    Replies: 0
    Last Post: 3 Aug 2010, 03:06 AM
  3. PCI COMPLIANCE: extras/curltest.php
    By Sir Paolo in forum General Questions
    Replies: 3
    Last Post: 21 Feb 2010, 08:38 PM
  4. can I delete phpinfo.php?
    By keylesslocks in forum General Questions
    Replies: 1
    Last Post: 17 Sep 2008, 05:44 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg