0
votes

Uploaded files in a powermail form are stored in http://www.domain.com/uploads/tx_powermail/ Anybody has access to these files! Is there a way to restrict the access to the uploaded files? When i add a .htaccess file in the folder with Deny from all Will Powermail and TYPO3 still have enough permissions to save and read the uploaded files?

2

2 Answers

0
votes

First you should check your domain don't have security token like htaccess password authentication if not, so you can give this folder permission to 02755 it can help, or in the end you can change the path of the folder by typoscript.

0
votes

Adding a .htaccess file in the folder with "deny from all" will restrict the access to the files. Maybe could the powermail extension automaticly add the htacces file on installation.