Method 1 - modify apache conf or .htaccess order allow,deny deny from all 登入後複製 Method 2 - Store them in a file outside web root. e.g: include('../private/db.php')登入後複製 Better approach is Method 1 + 2 :)