Permission denied errors¶
InteLIS reports Permission denied when the web server cannot write to one of
its folders.
-
Open a terminal on the InteLIS machine and run:
intelis checkEach folder the web server cannot write to shows as a failed row, such as
var/cache writable. AHow to fixrow follows with the commands to run.If
intelis checkis not recognisedThe install is older. Run the same check under its earlier name:
intelis preflight -
Run the repair it prints:
intelis provisionIt creates missing folders and resets their ownership and permissions. It asks for the administrator password.
If
intelis provisionfails becausevar/cachebelongs to rootintelis provisionstarts the application to find its folders. Avar/cachefolder owned by root stops it before it can repair anything. This usually follows acomposercommand run as root.Give the folder back first.
intelis checkprints these lines with the exact folders underif that cannot start:sudo chown -R $(logname):www-data /var/www/intelis/var/cache sudo chmod -R g+w /var/www/intelis/var/cacheThen run
intelis provisionagain. -
Run the check again:
intelis checkEvery
writablerow passes.If a folder still fails
Run the full permission repair. It also resets ownership across the installation after a copy or a restore:
sudo intelis-refresh -p /var/www/intelis -m fullOn older installs, use
/var/www/vlsmin place of/var/www/intelis.
Do not widen permissions across /var/www
A command such as setfacl -R -m u:www-data:rwx /var/www gives the web
server write access to every file of every site on the machine. A flaw in
any one site then reaches all of them. The error also returns after the next
update, because the real fault is still there.
If one folder must be shared with another account, grant access on that folder only.