Log inUsernamePassword
Log me on automatically each visit    
Register
Register
Log in to check your private messages
Log in to check your private messages
SMS Forum Index » Suggestions

Post new topic   Reply to topic
Suhosin - security php
View previous topic :: View next topic  
Author Message
simbad
Senior Member


Joined: 30 Jun 2011
Posts: 106

PostPosted: Sun Jun 03, 2012 7:47 am    Post subject: Suhosin - security php Reply with quote

Can i sugestions to add:

http://www.hardened-php.net/suhosin/

Do we have fail2ban for webmin? Smile
Back to top
View user's profile Send private message
gerasimos_h
Site Admin


Joined: 09 Aug 2007
Posts: 1757
Location: Greece

PostPosted: Sun Jun 03, 2012 11:09 am    Post subject: Reply with quote

As far as I know, I don't know a webmin module for fail2ban.
Do you really need suhosin?
Have you use it before, on another distribution?

gerasimos_h

_________________
Superb! Mini Server Project Manager
http://sms.it-ccs.com
Back to top
View user's profile Send private message Visit poster's website
simbad
Senior Member


Joined: 30 Jun 2011
Posts: 106

PostPosted: Mon Jun 04, 2012 9:34 am    Post subject: Reply with quote

I was thniking for blocking password guesting to integrate to fail2ban Smile

No, not yet, but I would like it, it brings some security improvements to the entire server.
Back to top
View user's profile Send private message
simbad
Senior Member


Joined: 30 Jun 2011
Posts: 106

PostPosted: Sat Nov 03, 2012 8:57 am    Post subject: Reply with quote

gerasimos_h wrote:
As far as I know, I don't know a webmin module for fail2ban.
Do you really need suhosin?
Have you use it before, on another distribution?

gerasimos_h


suhosin is default security in apache on all cpanel/whm servers Smile

Can we have on sms Smile
Back to top
View user's profile Send private message
gerasimos_h
Site Admin


Joined: 09 Aug 2007
Posts: 1757
Location: Greece

PostPosted: Sat Nov 03, 2012 4:28 pm    Post subject: Reply with quote

I prefer to avoid patching, and thus if there is a patched php package will be in extra, but there is an extension available, for doing half the job.
I'll add the extension disabled by default, and check for the patch...

Also suhosin is not compatible with php-5.4, not that it matters to us now, since we are using php-5.3.x by default Smile

gerasimos_h

_________________
Superb! Mini Server Project Manager
http://sms.it-ccs.com
Back to top
View user's profile Send private message Visit poster's website
gerasimos_h
Site Admin


Joined: 09 Aug 2007
Posts: 1757
Location: Greece

PostPosted: Sat Nov 03, 2012 8:23 pm    Post subject: Reply with quote

Packages created and will upload later today...

php-suhosin is the extension by default disabled, and part of main packages.
to enable it edit /etc/php/suhosin.ini

php_suhosin is the php built with suhosin-patch available in /extra/packages.
It's recommended to remove php before installing it, for the sanity of package information.

gerasimos_h

_________________
Superb! Mini Server Project Manager
http://sms.it-ccs.com
Back to top
View user's profile Send private message Visit poster's website
Display posts from previous:   
Post new topic   Reply to topic    SMS Forum Index » Suggestions All times are GMT + 2 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum

SMS - Superb! Mini Server Project © 2016
Powered by phpBB © 2001, 2002 phpBB Group
iCGstation v1.0 Template By Ray © 2003, 2004 iOptional