I was wondering what the general concensus on security was. I have implemented the htaccess files as suggested in the small guide, I can't get at the core php.ini etc (I run my websites on a VPS from WebFusion and I can't get access through normal ftp, I would have to use the shell access, which I'm afraid I no nothing about. Seems to be more difficult from a Mac as well).
I haven't increased the settings on the read write access to directories beyond those given for the initial set up, I had a few problems with not being able to access the admin properly etc.
However, I have been keeping an eye on my logs and have noticed that I am getting quite a few errors noted when there is a request for non-existant files. ie
[Wed Feb 04 02:38:59 2009] [error] [client 94.136.34.86] client sent HTTP/1.1 request without hostname (see RFC2616 section 14.23): /w00tw00t.at.ISC.SANS.DFind:)
[Wed Feb 04 12:16:35 2009] [error] [client 75.149.76.99] File does not exist: /var/www/vhosts/italianbev.co.uk/httpdocs/roundcube
[Wed Feb 04 12:16:37 2009] [error] [client 75.149.76.99] File does not exist: /var/www/vhosts/italianbev.co.uk/httpdocs/webmail
[Wed Feb 04 12:16:37 2009] [error] [client 75.149.76.99] File does not exist: /var/www/vhosts/italianbev.co.uk/httpdocs/mail
[Wed Feb 04 20:36:40 2009] [error] [client 92.48.70.150] client sent HTTP/1.1 request without hostname (see RFC2616 section 14.23): /test.w00t:)
Also log files reading:
94.136.34.86 - - [04/Feb/2009:02:38:59 +0000] "GET /w00tw00t.at.ISC.SANS.DFind:) HTTP/1.1" 400 505 "-" "-"
75.149.76.99 - - [04/Feb/2009:12:16:35 +0000] "GET /roundcube/index.php HTTP/1.0" 404 1497 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; nl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 (.NET CLR 3.5.30729)"
75.149.76.99 - - [04/Feb/2009:12:16:35 +0000] "GET /index.php HTTP/1.0" 200 11138 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; nl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 (.NET CLR 3.5.30729)"
75.149.76.99 - - [04/Feb/2009:12:16:37 +0000] "GET /webmail/index.php HTTP/1.0" 404 1497 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; nl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 (.NET CLR 3.5.30729)"
75.149.76.99 - - [04/Feb/2009:12:16:37 +0000] "GET /mail/index.php HTTP/1.0" 404 1497 "-" "Mozilla/5.0 (Windows; U; Windows NT 6.0; nl; rv:1.9.0.5) Gecko/2008120122 Firefox/3.0.5 (.NET CLR 3.5.30729)"
92.48.70.150 - - [04/Feb/2009:20:36:40 +0000] "GET /test.w00t:) HTTP/1.1" 400 505 "-" "-"
Should I be worried by these? I have noted this activity since I started getting my log reports sent through email.
Any comments suggestions would be appreciated.
Security any additional tips
General project discussion. NOT for help questions.
Return to “General Discussion”
Jump to
- Official Boards
- ↳ README FIRST!!!
- ↳ Announcements
- ↳ General Discussion
- Support Boards
- ↳ CMSMS Core
- ↳ Modules/Add-Ons
- ↳ Help Wanted (commercial)
- ↳ Translations
- Community Boards
- ↳ Tips and Tricks
- ↳ CMS Show Off
- ↳ Layout and Design (CSS & HTML)
- ↳ Feature ideas
- ↳ Developers Discussion
- ↳ The Lounge
- International Discussions
- ↳ Czech/Slovak - Česky/Slovensky
- ↳ Danish - Dansk
- ↳ Dutch - Nederlands
- ↳ Aankondigingen
- ↳ Tips en Trucs
- ↳ Vertalingen & Documentatie
- ↳ Hulp gezocht (commercieel)
- ↳ Finnish - Suomi
- ↳ French - Français
- ↳ German - Deutsch
- ↳ BITTE ZUERST LESEN !!!
- ↳ Ankündigungen
- ↳ Installation und Einstellungen
- ↳ Module und Tags
- ↳ Smarty-Tipps und -Tricks
- ↳ Layout und Design
- ↳ Suchmaschinenoptimierung (SEO)
- ↳ HowTo's
- ↳ Übersetzungen
- ↳ Show Off
- ↳ Hilfe gesucht (kommerziell)
- ↳ Stammtisch
- ↳ Hungarian - Magyar
- ↳ Italian - Italiano
- ↳ Moduli/Plugins
- ↳ Lithuanian - Lietuviškai
- ↳ Darbo / bendradarbiavimo pasiūlymai ir paieška
- ↳ Persian / Farsi
- ↳ Polish - Polski
- ↳ Portuguese - Português
- ↳ Russian - русский
- ↳ Предложения и поиск РАБОТЫ
- ↳ Spanish - Español
- ↳ Swedish - Svenska
- Geekmoot Editions
- ↳ Geekmoot 2016
- ↳ Connections and Conversations
- ↳ Geekmoot 2015
- ↳ Geek Moot 2012
- ↳ Locked: Geek Moot 2010
- Old Forums
- ↳ [locked] CMSMS 2.0 Beta
- ↳ Module Developers
- ↳ Closed Issues
- ↳ [locked] Documentation0ld
- ↳ Suggestions, Modifications & Corrections
- ↳ [locked] CMSMS 1.11 Beta
- ↳ Closed Issues
- ↳ [locked] CMSMS 1.10 Beta
- ↳ Closed Issues
- ↳ [locked] CMSMS 2.2 Beta
- ↳ [locked] CMSMS MLE fork
- ↳ Modules/Addon patchs
- ↳ [locked] Quality Assurance
- ↳ [locked] Accessability and Usability
- ↳ [locked] Documentation
- ↳ Media and presentations about CMSMS
- ↳ [locked] Installation, Setup and Upgrade