Error messages and the display_errors directive
By default, PHP displays error messages in a user’s web browser. This feature is very useful when you are initially developing and debugging your website. However, when website development is complete, displaying error messages can be a security risk. Error messages can reveal information about your website, such as path information and variables, that should be kept private. The display_errors directive controls whether or not PHP displays error messages in users’ web browsers. To set the display_errors directive, follow these steps:- Log in to your account using SSH.
-
Use a text editor to modify the .htaccess file as follows:
-
To prevent PHP from displaying error messages, add the following line:
-
To allow PHP to display error messages, add the following line:
-
To prevent PHP from displaying error messages, add the following line:
- Save the changes to the .htaccess file and exit the text editor.
-
To verify that the new setting is active, create a PHP test file that contains the following code in the same directory where the .htaccess file is located:
- Load the test file in your web browser, and then search for the name of the directive. The Local Value column should display the new setting that you specified in the .htaccess file.
More information
- To view a complete list of PHP directives, please visit http://www.php.net/manual/en/ini.list.php.
- For more information about the display_errors directive, please visit http://www.php.net/manual/en/errorfunc.configuration.php#ini.display-errors.