How to set it up properrly?
Hi Dan:
Could you clarify? I am under the impression that if you are the sole user of your VPS that world permissions are not accessible from anyone over the internet, just anyone logged into your server. Correct?
Also, how would you advise setting up apache so it...
Hi everyone!
I keep finding these entries in my /var/log/messages logfiles:
Jun 21 00:20:13 host named[13353]: network unreachable resolving 'ns1.hansenet.de/A/IN': 2001:678:2::53#53
Can anyone tell me if this is a real problem or if its something I should just ignore? Is it something...
Permission Problem
Hi:
Had this problem before, it happened to me on both wordpress and joomla. Basically your files (when installed with cpanel) are set to a certain permission, and cpanel sets the owner and group owner to your user account. Then when php executes with apache (which is the...
Solution...kinda
I haven't been able to figure out how to stop the messages yet, but after doing alot of research online, I did find:
http://www.webhostingtalk.com/showthread.php?t=872302
Talking about the same issue. It's suggested on that forum to edit the /etc/named.conf file under the...
Thanks
Do you know if there is anyway to stop this nameserver problem? I was hoping it would just go away on its own once enough people had resolved to another nameserver...
But it continues to fill my log files. Thanks for your time on this.
Mike
So I have a site that seems to continually get denied from my server...I think. I'm not really sure how to interpret the messages in var/log/messages. Here is a typical line:
Apr 13 00:17:19 host named[13353]: client 74.125.44.94#56221: query (cache) 'www.socecoturismo.com/AAAA/IN' denied...
Fixed
Hi Dan sorry for not getting back sooner, knownhost figured it out. Earlier that day I had set my UDP_IN ports to "" and I should have left port 53 open to the public. It turns out, even if you have white listed your IP in csf Firewall, you still can't access UDP or something...
I really...
uh oh...
Hi Dan:
I continue to be the resident problem person on these forums...
I read this article about a half hour too late.
I tried changing my dns settings on godaddy for a domain. I changed the IP for that domain first, then I changed the name servers for the domain as well...
@Dan
Thanks for the advice. I should have mentioned that.
Eventually, I will wake up one morning and be locked out of all admin access. However, I am willing to deal with this for the added level of security. I am planning on just making the drive to my other white listed IP and adding my new...
A little further along
To answer my own question:
I was looking for a way to close down ports so I'm not as vulnerable. My original thinking was that a port had to be open for me to access it. This is untrue as it turns out:
If you are managing a server by yourself, not reselling AND using...
how to block certain ports
Ok, so I won't be using email on my servers other than just sending alerts from the server to me. So can I go ahead and block all mail ports incoming?
would I just remove them from the /etc/csf/csf.conf file in the section:
# Allow incoming TCP ports
TCP_IN =...
What if we don't know
I read the tutorial and followed the instructions, they worked wonderfully! However, I am very paranoid. I have absolutely no experience with hosting. It says in the "pre-purchase" forums that knownhost will do an "initial security hardening." I spoke with Knownhost...
It's Alive!
Thanks so much for your help Dan!
It's working! However I was scrolling through the log and I did notice that I have two errors
I am guessing I just need to find the correct paths to these files? Is there more than one "htdocs" on a linux platform (yes, I'm that new to this..)...
crontab question
Hi dan:
I am VERY new at this and I was wondering, I have set up the cron just like you said but, when I downloaded the .zip package it came with a file called s3backup, is this the file I should run in the cron? so would my code look like:
MAILTO=""
0 2 * * *...
CSF for a firewall
@Dan - Thanks, I read the post about APF, it was very informative.
I will use csf, and post when I get a reply from support on disabling or atleast ignoring the power panel firewall. Thanks for the information on /etc/csf/csf.conf, I will add some ports to the list of...