Forum Masters, how do I protect this while working on it?

Discussion in 'Forum Management' started by cyclo394, Dec 3, 2007.

  1. #1
    So, I uploaded my phpbb3 forum to the internet. I am sure many of you have been reading my posts and been saying , wow, this person is really e-stupid, haha.

    Anyway, now I am working on the thing and learning the software. From seeing a few posts about forums getting hacked, I noticed that permissions are very important to keeping my forum secure. And there are tons of permissions.

    So, while I am working on my forum layout , how do I protect it from some savvy hacker who would happen to stumble upon it and have ill intentions. The forum is not linked to my site yet , its just on its own page in cyberspace. Any advice much appreciated.

    P.S. I know there are tons of permissions areas, but just some tips on how to set the major ones to protect it would be appreciated, Thanks.
     
    cyclo394, Dec 3, 2007 IP
  2. WatchOut

    WatchOut Guest

    Messages:
    1,359
    Likes Received:
    65
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Config.php file, reduce the permissions. Make sure you have NO install folder.
     
    WatchOut, Dec 3, 2007 IP
  3. cyclo394

    cyclo394 Peon

    Messages:
    305
    Likes Received:
    3
    Best Answers:
    0
    Trophy Points:
    0
    #3
    The config.php permissions are at 6 4 4. What should I take them down to , or should I leave them as is. I deleted the install folder.
     
    cyclo394, Dec 3, 2007 IP
  4. WatchOut

    WatchOut Guest

    Messages:
    1,359
    Likes Received:
    65
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Should do the trick. If you want additional security, you may want to disable HTML from being allowed on posts/signatures etc, as it poses a security threat.

    Also; I am not sure but renaming both modcp/admincp folders might be a goodie, but may be advanced if you don't know what you're doing.

    - Meti
     
    WatchOut, Dec 3, 2007 IP
  5. Eliteboss

    Eliteboss Peon

    Messages:
    289
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Just disable registrations until you are ready to go
     
    Eliteboss, Dec 3, 2007 IP
  6. ThreeGuineaWatch

    ThreeGuineaWatch Well-Known Member

    Messages:
    1,489
    Likes Received:
    69
    Best Answers:
    0
    Trophy Points:
    140
    #6
    Use a host that knows about suexec and suphpexec
     
    ThreeGuineaWatch, Dec 3, 2007 IP