Results 1 to 8 of 8

Thread: security problem - need help asap

  1. #1
    Member
    Join Date
    Aug 2002
    Posts
    20

    Default security problem - need help asap

    Hi,

    I have been told about a 2 secuirty problems/holes on my dedi server I am running cpanel/whm 5.3-R56

    These are the problems

    I can see a list of all the domains we host, and I can view all the access logs for them and so can my clients when ftp'ing using USERNAME_logs. How do I stop this from displaying all the logs and just the logs for the user?

    I can also been told that a user can see that on there domain there's an open directory called /java-sys/ . How do I close/lock this dir from displaying it the user ftp account?

    Regards,
    Garry

  2. #2
    Member silvernetuk's Avatar
    Join Date
    Sep 2002
    Location
    United Kingdom
    Posts
    311

    Default

    Hi,

    I have found out that the /java-sys/ folder is displayed when anyone type in http://www.domain-name.com/java-sys/ and it displays the dir listings, both Class and Java files anyone please help I need this sorted asap.

    Regards,
    Garry

  3. #3
    Moderator cPanel Partner NOC Badge dgbaker's Avatar
    Join Date
    Sep 2002
    Location
    Toronto, Ontario Canada
    Posts
    2,780

    Default

    [quote:c360537f7c][i:c360537f7c]Originally posted by silvernetuk[/i:c360537f7c]

    Hi,

    I have far found out that the /java-sys/ folder is displayed when anyone type in http://www.domain-name.com/java-sys/ and it displays the dir listings, both Class and Java files anyone please help I need this sorted asap.

    Regards,
    Garry[/quote:c360537f7c]

    Put a .htaccess file in the directory /usr/local/cpanel/java-sys with the following in it

    Options -Indexes
    Regards,
    David
    Forum Moderator

  4. #4
    Member silvernetuk's Avatar
    Join Date
    Sep 2002
    Location
    United Kingdom
    Posts
    311

    Default

    Hi,

    Thank you for that, what about the other problem with the logs ?

    Regards,
    Garry

  5. #5
    Member silvernetuk's Avatar
    Join Date
    Sep 2002
    Location
    United Kingdom
    Posts
    311

    Default

    Hi,

    I do not mean to be thick but how do I put the .htaccess in that folder this is the first time I have every had a dedi server and I know very little SSH could you do me a guide please ?

    Regards,
    Garry

  6. #6
    Member silvernetuk's Avatar
    Join Date
    Sep 2002
    Location
    United Kingdom
    Posts
    311

    Default how do I make .htaccess file

    Hi,

    I understand I have to log into root then type

    cd /usr/local/cpanel/java-sys

    but how do I put/make the .htaccess file ?
    and then I put Options -Indexes in the .htaccess file

    But how do I make the .htaccess file from fresh or how do I edit it if it already there ?

    Regards,
    Garry

  7. #7
    Moderator cPanel Partner NOC Badge dgbaker's Avatar
    Join Date
    Sep 2002
    Location
    Toronto, Ontario Canada
    Posts
    2,780

    Default

    You can use vi or pico.

    In that directory type pico

    Type in the info you want.

    Hi ctrl+x then type yes
    type in the filename .htaccess

    Done
    Regards,
    David
    Forum Moderator

  8. #8
    Member
    Join Date
    Aug 2002
    Posts
    20

    Default

    Hi David,

    Thank you for that, very much appreciated

    Regards,
    Garry
    Silvernet UK Ltd.

Similar Threads

  1. i got a major problem need help asap [moved]
    By GonZo1323 in forum New User Questions
    Replies: 2
    Last Post: 03-31-2006, 02:47 AM
  2. Need Help ASAP , FTP Problem
    By MixQ8 in forum cPanel & WHM Discussions
    Replies: 2
    Last Post: 09-10-2005, 05:56 AM
  3. Big problem with usrquota.Please help ASAP
    By the_bobara in forum cPanel & WHM Discussions
    Replies: 8
    Last Post: 06-25-2005, 04:21 AM
  4. subdomain problem..asap plz
    By bigk in forum cPanel & WHM Discussions
    Replies: 0
    Last Post: 07-20-2003, 03:00 PM
  5. Major Problem Need Help ASAP
    By rcthost in forum cPanel & WHM Discussions
    Replies: 2
    Last Post: 10-23-2002, 01:50 PM