Hi,

We must secure access to the config.properties file by adding for example a .htaccess file containing:

Order deny, allow
Deny from all

Comments

danithaca’s picture

Status: Needs work » Closed (won't fix)

One quick work around is that you can save config.properties outside of the module folder, and use "-c" option to point to it.

In the sucessor release, I have completely rewrite the code and removed config.properties. Configuration is passed in directly throw java -D option or system variables, so there's no need to change .htaccess.