Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Security Hardening . . . . . . . (was Re: [tlug] Host Blocking and Logfile Parsing)
- Date: Sat, 20 Jan 2007 22:01:08 -0500
- From: Jim <jep200404@example.com>
- Subject: Security Hardening . . . . . . . (was Re: [tlug] Host Blocking and Logfile Parsing)
- References: <Pine.NEB.4.64.0701201053020.1314@example.com> <1169300108.24083.7.camel@example.com> <Pine.NEB.4.64.0701211038210.1314@example.com>
Curt wrote: > Well, assuming, as I pointed out, that you're not using a script that > makes the problem worse. Learn how to write safe shell scripts. > Web applications, especially PHP ones, are notorious for for all sorts > of hacks; you'd probably get more advantage from sandboxing the apps to > the greatest degree possible. Many PHP exploits involve badly written PHP code. As with shell scripts, learn how to write safe PHP code. Sandboxing is good, but sophisticated web apps need to interact enough with the rest of the system that big holes in sandboxing would be needed. > Ensure that your web servers' database users have only the minimum > access necessary to carry out their work. Yup. More broadly, this is called the principle of least privilege. http://en.wikipedia.org/wiki/Principle_of_least_privilege
- Follow-Ups:
- Re: Security Hardening . . . . . . . (was Re: [tlug] Host Blocking and Logfile Parsing)
- From: Curt Sampson
- Security Hardening . . . . . . . (was Re: [tlug] Host Blocking and Logfile Parsing)
- From: Stephen J. Turnbull
- References:
- [tlug] Host Blocking and Logfile Parsing
- From: Curt Sampson
- Re: [tlug] Host Blocking and Logfile Parsing
- From: scott
- Re: [tlug] Host Blocking and Logfile Parsing
- From: Curt Sampson
Home | Main Index | Thread Index
- Prev by Date: Re: [tlug] Host Blocking and Logfile Parsing
- Next by Date: Re: Security Hardening . . . . . . . (was Re: [tlug] Host Blocking and Logfile Parsing)
- Previous by thread: Re: [tlug] Host Blocking and Logfile Parsing
- Next by thread: Re: Security Hardening . . . . . . . (was Re: [tlug] Host Blocking and Logfile Parsing)
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links