I have written several PHP web services where I pass in arguments via the URL. To prevent unauthorized access, I pass in a unique key as one of the arguments. I call the PHP file via HTTPS, and I am wondering if there’s a way I can prevent the script from running if HTTPS is not used.
Share
Slightly off topic, but if you’re using PHP with Apache Httpd and
mod_ssl, you can force SSL access to files (and PHP scripts) by placing theSSLRequireSSLdirective in.htaccessor in the Directory configuration.