WordPress.org

Ready to get started?Download WordPress

Forums

The files are public (2 posts)

  1. dem
    Member
    Posted 6 years ago #

    If someone discovers the URL of your media files directory (e.g. http://yoursite.com/videos/video.mpg) then he can go to the browser point to that URL and download the file.

    So... how can i make those files private?. I don't want people to download it.

    what i am trying to do is a site where registered (paying for it) people can see particular videos. and i don't want people to see those videos for free.

    Help?

    http://wordpress.org/extend/plugins/podpress/

  2. Frederick D.
    Member
    Posted 6 years ago #

    I am not a current user of PodPress. I think what PodPress does is post a URL which uses the Location header to forward the client to the actual MP3 file. This means that there is no protection on the file on the server.

    What you can do to change this is modify the .mp3 file in the podpress plugin directory; where it sends the Location header to forward the user to the file, change that and use PHP's readfile() function to send the MP3 to the user through PHP. (The proper MIME type is also required using the Content-Type header.) Then you can use HTACCESS to block access to the mp3 files (through Apache) and you'll be secure.

    Only a user using the PodPress URL (and I think PodPress authenticates them in pay mode) can download the file.

Topic Closed

This topic has been closed to new replies.

About this Topic