Domain Discussion Board

Go Back   Domain Discussion Board > General > Tutorials

 
Reply
 
LinkBack Thread Tools Display Modes
How To Harden Cpanel?
Old
  (#1 (permalink))
weblord
weblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond repute
 
weblord's Avatar
 
Status: Offline
Posts: 16,670
Points: 3,081.5
Bank: 1,851,990.5
Total Points: 1,855,072.0
Donate
Join Date: Mar 2006
Location: Philippines
Rep Power: 10
How To Harden Cpanel? - 09-11-2006, 02:59 AM

You should configure the following in your WHM (CPanel):



Main >> Server Configuration >> Tweak Settings

[x] Prevent the user 'nobody' from sending out mail to remote addresses (php and cgi scripts generally run as nobody if you are not using phpsuexec and suexec respectively.)

[x] Track the origin of messages sent though the mail server by adding the X-Source headers (exim 4.34+ required)



Main >> Security >> Fix Insecure Permissions (Scripts)



Main >> Security >> Tweak Security

"Compilers are disabled for unpriviledge users"



Main >> Service Configuration >> Enable/Disable SuExec

suexec Status "enabled"



Main >> Account Functions >> Disable or Enable Demo Mode

Select from "Users" the "demo" account and click "Modify" then click "Disable" if it exists

why do you need to do this? so you minimize hacker's activities and exploits on your nix box.
   








Reply With Quote
Re: How To Harden Cpanel?
Old
  (#2 (permalink))
bbalegere
 
Status:
Posts: n/a
Points: 0
Bank: 0
Total Points: 0
Donate
Re: How To Harden Cpanel? - 09-12-2006, 09:42 AM

I think access to Cron jobs should also be denied as many Shell commands can be executed using the cron jobs feature.
   
Reply With Quote
Sponsored Links
Re: How To Harden Cpanel?
Old
  (#3 (permalink))
weblord
weblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond reputeweblord has a reputation beyond repute
 
weblord's Avatar
 
Status: Offline
Posts: 16,670
Points: 3,081.5
Bank: 1,851,990.5
Total Points: 1,855,072.0
Donate
Join Date: Mar 2006
Location: Philippines
Rep Power: 10
Re: How To Harden Cpanel? - 09-12-2006, 09:28 PM

if "demo" mode is disabled there's no way for them to access your server if it's a trojan, try secure the temp
./securetmp
then reboot
   








Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Points Per Thread View: 1.0
Points Per Thread: 15.0
Points Per Reply: 5.0


Similar Threads
Thread Thread Starter Forum Replies Last Post
Some Basic Usable Cpanel Commands weblord Tutorials 13 05-26-2007 08:41 PM
cPanel o DirectAdmin? mtorregiani Tecnologia Web General 19 11-03-2006 12:48 AM
Free cpanel scripts anyone? josephheskett Scripts 15 06-26-2006 10:43 PM
Excellent free cpanel hosting ~andrew~ Member Advertising 6 05-11-2006 10:52 AM


Powered by vBulletin® Version 3.6.8
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.0.0 ©2007, Crawlability, Inc.