 | |  | | | Photopost Pro How Do I...? Wondering how to do things in PhotoPost? |
September 26th, 2005, 12:38 PM
|
#1 (permalink)
| | Member Verified Customer
Join Date: Jan 2003 Location: West Palm Beach, FL
Posts: 161
| Trying to understand security. Help...
Alright. My sites are being clobbered by hackers and whatnot.. I'm not saying they're getting in through Photopost - but probably some other script. Still, I just can't be sure.. I'm weary of any world-writable directories (chmod 777). If I'm not mistaken, there are folderrs that need to be set this way. Isn't it possible for anyone to come along and upload malicious scripts or rootkits to those folders? If not, how? How are they blocked from doing so?
For now, I've turned off all uploads on my Photopost/Classified sites. Security is becoming a major issue for me...
|
| |
September 26th, 2005, 05:51 PM
|
#2 (permalink)
| | Member Verified Customer
Join Date: Jan 2003 Location: West Palm Beach, FL
Posts: 161
|
I think I may have figured out what I want to do. I want to place the "data" folder and "uploads" folder outside of the webroot.. I just tried this with the "data" folder and I made the change in the Admin CP as well but all my images came up blank after the move. What did I do wrong?
Also, I see where I can change the path to the "uploads" directory but how can I match up the "URL to bulkupload directory?" then? There woudn't be any "www" to get to it...
|
| |
September 26th, 2005, 06:25 PM
|
#3 (permalink)
| | Photopost Developer Verified Customer
Join Date: Jun 2002 Location: Abingdon,MD
Posts: 66,806
|
The upload path has to be in the webroot
The data directory you need to use our utility to change that and move the files. Note the directory must exist on the server and be 777
|
| |
September 26th, 2005, 06:27 PM
|
#4 (permalink)
| | Member Verified Customer
Join Date: Jan 2003 Location: West Palm Beach, FL
Posts: 161
|
Hi Chuck.. Can you tell me more about the utility?
Thank you...
|
| |
September 26th, 2005, 06:40 PM
|
#5 (permalink)
| | Photopost Developer Verified Customer
Join Date: Jun 2002 Location: Abingdon,MD
Posts: 66,806
|
In admin section chooose storage options and it will tell ya everything you need to know |
| |
September 26th, 2005, 07:52 PM
|
#6 (permalink)
| | Member Verified Customer
Join Date: Dec 2004 Location: techarena.in
Posts: 426
| Quote: |
Originally Posted by omegatron In admin section chooose storage options and it will tell ya everything you need to know  | you really keep many photopost secrets to yourself.......... 
thanks for this tip.
Regards,
|
| |
September 26th, 2005, 08:00 PM
|
#7 (permalink)
| | Photopost Developer Verified Customer
Join Date: Jun 2002 Location: Abingdon,MD
Posts: 66,806
|
?? secrets
|
| |
September 27th, 2005, 10:08 AM
|
#8 (permalink)
| | Member Verified Customer
Join Date: Jan 2003 Location: West Palm Beach, FL
Posts: 161
|
I'm looking into this right now. Thank you.. What about with Classifieds? I don't see a "storage options" link in the Admin CP. Is there an equivilent?
|
| |
September 27th, 2005, 10:23 AM
|
#9 (permalink)
| | Member Verified Customer
Join Date: Jan 2003 Location: West Palm Beach, FL
Posts: 161
|
Okay. New question. What if I want to take the data folder, which is world-writable, outside the webroot. I want to place it in a spot that nobody can find (before public_html). If I were to do this, then the Default URL Setting appears impossible.. Is it impossible to do this?
Thanks...
|
| |
September 27th, 2005, 10:31 AM
|
#10 (permalink)
| | Photopost Developer Verified Customer
Join Date: Jun 2002 Location: Abingdon,MD
Posts: 66,806
|
The url has nothing to do with things as you would use the IPS to serve images (watermark.php)
You simply turn on the ips and then follow the steps to move the large and medium images. You'll be fine
No there is no current way to do this in Classifieds
|
| | |
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests) | | | | Thread Tools | | | | Display Modes | Rate This Thread | Linear Mode | |
Posting Rules
| You may not post new threads You may not post replies You may not post attachments You may not edit your posts HTML code is Off | | | All times are GMT -5. The time now is 03:06 PM. | |