I see this issue discussed in several threads but no clear conclusion is offered. So I'm asking for that now.
cPanel security recommendations say to use suPHP, and they say to enable Jail Apache. But Jail Apache requires mod_ruid2 which not compatible with mod_suphp. Therefore we can't follow the recommendations.
Which is the official cPanel blessed recommendation...?
1- remove suPHP (If so, what is an alternative compatible with mod_ruid2?)
2- remove mod_ruid2 (If so, what is the recommended procedure if shell is available to accounts? What is the solution for Apache Symlink Protection which is disabled when Jail Apache/mod_ruid2 are unavailable?)
cPanel security recommendations say to use suPHP, and they say to enable Jail Apache. But Jail Apache requires mod_ruid2 which not compatible with mod_suphp. Therefore we can't follow the recommendations.
Which is the official cPanel blessed recommendation...?
1- remove suPHP (If so, what is an alternative compatible with mod_ruid2?)
2- remove mod_ruid2 (If so, what is the recommended procedure if shell is available to accounts? What is the solution for Apache Symlink Protection which is disabled when Jail Apache/mod_ruid2 are unavailable?)