 
            
                Re:Security Alert! The PHP CGI cannot be accessed directly 
                
                     
                        2011/01/29 02:25:04
                    
                    (permalink)
                    
                
                
             
         
        
        
        
            
            
                
                 <quote from="php.ini">
; cgi.force_redirect is necessary to provide security running PHP as a CGI under
; most web servers. Left undefined, PHP turns this on by default. You can
; turn it off here AT YOUR OWN RISK
; **You CAN safely turn this off for IIS, in fact, you MUST.**
; cgi.force_redirect = 1
cgi.force_redirect = 0
; if cgi.force_redirect is turned on, and you are not running under Apache or Netscape 
; (iPlanet) web servers, you MAY need to set an environment variable name that PHP
; will look for to know it is OK to continue execution. Setting this variable MAY
; cause security issues, KNOW WHAT YOU ARE DOING FIRST.
; cgi.redirect_status_env = ;
</quote>
you have to set a env too like
cgi.redirect_status_env ="yes";
if it works? tell me?