The Community Forums

Interact with an entire community of cPanel & WHM users!
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

PhpPgAdmin Execution Time

Discussion in 'Security' started by Gur50, May 19, 2015.

  1. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    Hi, quickly; I'm not complaining about "lfd" eMail.

    I have found the information is suspicous about PhpPgAdmin Execution Time.

    Code:
    Time:         Tue May 19 16:25:53 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process TimeExceeded:     192661 > 1800 (seconds)
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/index.php
    PID:          9486 (Parent PID:9486)
    Killed:       No

    So far I had to install PostgreSql 9.4.1, it looks work fine at this moment. I forced to upgrade phpPgAdmin with "/usr/local/cpanel/bin/updatephppgadmin", current version is 5.1

    Phppgadmin also works fine, I wondering about security issues, can disable phppgadmin also if needed.

    Well any tip or sharing your experience is welcome, thanks.
     
  2. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,854
    Likes Received:
    676
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    Hello,

    Could you elaborate on the security issues you are concerned about? For instance, why do you prefer to disable phpPgAdmin? Is there a specific security report you are referencing?

    Thank you.
     
    Gur50 likes this.
  3. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    Hi Michael, thank you for reply.

    Mostly I'm managing my customers cPanel accounts and their needs, so phppgadmin is not must for them. I mean i can configure their db and users with psql console/commands.

    Currently 1 dababase exists on Postgresql and its related to mine project that served on same server on a cPanel account.

    Why phpPgAdmin is running continously? I mean is this normal? Is it running like service and lfd notice me?

    or someone trying to access it from outside? Well I dont have any experience with phpPgAdmin that's why I wondering about security and exploits.

    So if there is a security problem or open to exploits I think I gave over phppgadmin.

    Almost most ports is closed on my WHM server, except http, https, ftp etc. is open.

    Tested Postgresql with existing user and db succesfully refusing incoming connections from outside of server, so this looks ok.
     
  4. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,854
    Likes Received:
    676
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    Hello,

    You can disable "PhpPgAdmin" in the feature list associated with the package assigned to the account via "WHM >> Feature Manager".

    Thank you.
     
    Gur50 likes this.
  5. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    Hi Michael,

    thank you, probably this is the what I need, simple and elegant solution.
     
  6. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    I have disabled Phppgadmin admin from feature list but lfd shows me still some processes are running and I can't kill neither stop them.

    Any workaround for this?

    Lfd messages like below :


    Code:
    Time:         Thu May 21 15:01:11 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process Time
    Exceeded:     360263 > 1800 (seconds)
    
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/index.php
    PID:          10081 (Parent PID:10081)
    Killed:       No

    Code:
    Time:         Thu May 21 15:01:11 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process Time
    Exceeded:     360596 > 1800 (seconds)
    
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/intro.php
    PID:          9342 (Parent PID:9342)
    Killed:       No

    Code:
    Time:         Thu May 21 15:01:11 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process Time
    Exceeded:     361077 > 1800 (seconds)
    
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/sql.php
    PID:          8059 (Parent PID:8059)
    Killed:       No

    Code:
    Time:         Thu May 21 15:01:11 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process Time
    Exceeded:     360598 > 1800 (seconds)
    
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/tables.php
    PID:          9336 (Parent PID:9336)
    Killed:       No

    Code:
    Time:         Thu May 21 15:01:11 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process Time
    Exceeded:     360231 > 1800 (seconds)
    
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/index.php
    PID:          10215 (Parent PID:10215)
    Killed:       No

    Code:
    Time:         Thu May 21 15:01:11 2015 +0300
    Account:      cpanelphppgadmin
    Resource:     Process Time
    Exceeded:     360379 > 1800 (seconds)
    
    Executable:   /usr/local/cpanel/3rdparty/php/54/bin/php-cgi
    Command Line: /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/index.php
    PID:          9486 (Parent PID:9486)
    Killed:       No
     
  7. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,854
    Likes Received:
    676
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    Hello,

    The process still runs, it's just users are unable to use it. Have you considered adding the process to the LFD process ignore list, so that those alerts are not sent?

    Thank you.
     
  8. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    Hi Michael,

    thanks for reply.

    You think, running cpanelphppgadmin is safe? like that.

    Yes I can put them to lfd ignore list if GOD wishes, but I'm suspicious about cpanelphppgadmin process, why they run? even looks like multiple times or instances...
     
  9. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,854
    Likes Received:
    676
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    It's normal for phpPgAdmin to run if you have installed PostgreSQL. I don't see anything suspicious about the processes you referenced. Have you considered blocking the port that phpPgAdmin runs on?

    Thank you.
     
  10. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    Hi Michael,

    thank for your reply, information and for your time.

    If phpPgAdmin runs on cPanel same with same port Postgresql that "5432" it's already blocked for incoming and outgoing connections.

    I have also checked cPanel https://documentation.cpanel.net/display/ALD/phpPgAdmin, http://phppgadmin.sourceforge.net/doku.php?id=faq_docs couldn't find any other information.

    So far what I have understand from forum posts and other replies on cpanel feature request section is wihout cPanel login no one can login phpPgAdmin right?
     
  11. Gur50

    Gur50 Member

    Joined:
    Jul 25, 2014
    Messages:
    13
    Likes Received:
    1
    Trophy Points:
    3
    cPanel Access Level:
    Root Administrator
    I believe something wrongs here ( load averages from my server now, phppgadmin %98.1 cpu usage... );


    Code:
    Pid : 8059 (Trace) (Kill)
    Owner : 504
    Priority : 0  
    CPU % : 98.1
    Memory : 0.0
    Command : /usr/local/cpanel/3rdparty/php/54/bin/php-cgi -c /usr/local/cpanel/3rdparty/php/54/etc/phppgadmin /usr/local/cpanel/base/3rdparty/phpPgAdmin/sql.php
    Edit : Killed process anyway, monitoring it, if it's going to spawn again or not.
     
    #11 Gur50, May 23, 2015
    Last edited: May 23, 2015
  12. cPanelMichael

    cPanelMichael Forums Analyst
    Staff Member

    Joined:
    Apr 11, 2011
    Messages:
    30,854
    Likes Received:
    676
    Trophy Points:
    113
    cPanel Access Level:
    Root Administrator
    Yes, this is the default port for PostgreSQL on cPanel.

    Thank you.
     
    Gur50 likes this.
Loading...
Similar Threads - PhpPgAdmin Execution
  1. umysql
    Replies:
    4
    Views:
    779

Share This Page