Heiko |
95 Comments | The Ruby on Rails Security Project wants to make Rails (applications) more secure. Heiko Webers of bauland42 writes blog posts about Rails and security related topics and carries out security audits for your web applications. We have a free book for you, too. Contact Heiko at 42 -the AT sign- bauland42.de.
Thursday, March 15, 2007 at 8:35PM File privileges
The following table shows which ownership and privileges the Apache files and directories should have. The ownership can be changed with the chown command, the privileges can be adjusted with the chmod command. Note, that the parent directories of these directories need to be modifiable only by root. All changes need to be performed in this order.
| Subject | Ownership (user:group) | Privileges |
| Binary directory | root:root | 755 (rwxr-xr-x) |
| Binary files, such as the httpd executable | root:root | 511 (r-x--x--x) |
| Configuration directory and files | root:root | 755 (rwxr-xr-x) |
| Log files and its directory | root:root | 700 (rwx------) |
| Content files and directories | apache:apache | 500 (r-x------) |
| Rails log and tmp directories and subdirectories | apache:apache | 700 (rwx------) |
Modules
# apache2 -l # or httpd -l
The following modules are a good basic:
Reader Comments (95)
Xanax sideeffect....
http://www.hicahs.colostate.edu/forum/topic.asp?TOPIC_ID=557
Free cartoon sex....
[URL=http://phpbb1.info]fot1[/URL] http://link3.info
...
great advice...
vibyzacp bhqd dquiymbe rnfgpyt dvkawzgy uveqmpfjs ebjynf