The Community Forums

Interact with an entire community of cPanel & WHM users!
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

User can view everyone else's log files

Discussion in 'General Discussion' started by DefHosting, Jan 19, 2003.

  1. DefHosting

    DefHosting Member

    Joined:
    May 23, 2002
    Messages:
    10
    Likes Received:
    0
    Trophy Points:
    1
    When a user logs into their ftp space via an ftp client such as cuteftp they can view everyone else's log files. In order to do this you append '_logs' to the username. In other words logging into ftp using:
    username = username_logs
    password = password

    They get a full listing of everyone's log files, can download and view them. This doesn't happen on all accounts just a few.

    Any ideas how to patch this up?
     
  2. registerpol

    registerpol Member

    Joined:
    Feb 25, 2003
    Messages:
    20
    Likes Received:
    0
    Trophy Points:
    1
    Location:
    Montreal

    you are right :)
     
    #2 registerpol, Jul 21, 2004
    Last edited: Jul 21, 2004
  3. tAzMaNiAc

    tAzMaNiAc Well-Known Member

    Joined:
    Feb 16, 2003
    Messages:
    559
    Likes Received:
    0
    Trophy Points:
    16
    Location:
    Sachse, TX
    Maybe you'd like to send that to cPanel instead of publicly posting that here.
     
  4. haze

    haze Well-Known Member

    Joined:
    Dec 21, 2001
    Messages:
    1,550
    Likes Received:
    3
    Trophy Points:
    38
    If the voices in my head are correct, you can change the CHMOD of the files via tweak settings in WHM. I also have the logs purged each time the logrunner runs.. this way the user can choose to keep those logs themselves and not tie up valuable space.
     
  5. myusername

    myusername Well-Known Member
    PartnerNOC

    Joined:
    Mar 6, 2003
    Messages:
    691
    Likes Received:
    1
    Trophy Points:
    18
    Location:
    chown -R us.*yourbase*
    cPanel Access Level:
    DataCenter Provider
    Twitter:
    I think I saw this about a year back and switched to pure_ftp from pro ftp to get rid of that.
     
Loading...

Share This Page