View Single Post
  #65  
Old 11-18-2009, 08:36 AM
 
geckoday geckoday is offline
 

X-Wizard
  
Join Date: Aug 2005
Posts: 1,073
 

Default Re: X-Cart and PCI-DSS / PA-DSS compliance

Quote:
Originally Posted by exsecror
@geckoday

I should point out that using suPHP is a deprecated security method (and also very slow and very buggy). It was mainly a workaround because Apache's suExec at the time didn't work correctly with PHP in FastCGI mode. This is no longer true (we've been running FastCGI + SuExec for years).
Yes, FastCGI & SuExec works as well, the key is the processes must run under the merchants user ID. There are some people who prefer using SuPHP as it has features that SuExec does not. It is not deprecated (perhaps it is generally going out of fashion) and is still maintained by the author. Many of the typical X-Cart customer hosting environments will be running suphp rather than FastCGI.
__________________
Manuka Bay Company
X-Cart Version 4.0.19 [Linux]

UGG Boots and other fine sheepskin products
http://www.snowriver.com
Reply With Quote