Changes

Jump to: navigation, search

SRA840 Lab9

845 bytes added, 15:59, 15 April 2009
no edit summary
[http://www.securityfocus.com/infocus/1694]http://www.securityfocus.com/infocus/1694
 
 
=Patricia Constantino=
 
- Did you have any problems with configuring PHP+Apache to be more secure. If you did then how did you resolve them?.
 
I didn't have any problem following the instructions in the book (I got more troubles with my Virtual Machine though) I got enough information about what to do and why, so as a conclusion I understand that all those steps are mainly to:
Avoid give unnecessary privileges to users.
Restrict the range of activity of unprivileged users.
Avoid the use of a server for general work process.
Open just the necessary ports and services.
 
 
- Why you chose those security tips?
I consider that talking about security, the very common open ports are the most susceptible to attacks, so I decide to get more understanding in that area.
 
I got this book borrowed and it's good:
 
http://www.apachesecurity.net/

Navigation menu