Apache 0777 directories


 
Thread Tools Search this Thread
Top Forums Web Development Apache 0777 directories
# 8  
Old 10-22-2008
If I were you, I would create an crontab function to change all the files in the directory of interest to read-only for security reasons. That way you have even more security.
# 9  
Old 10-22-2008
yes

But in my setup i dont wana break current functionality,Then you know how programmer reacts.So i will be using what i said before
# 10  
Old 10-22-2008
Quote:
Originally Posted by aliahsan81
yes

But in my setup i dont wana break current functionality,Then you know how programmer reacts.So i will be using what i said before
Then please explain why taking files that are not supposed to be executable and making them read only or read-write only will break current functionality?

What you are doing is good, but it is not enough to be fully secure.
# 11  
Old 10-22-2008
We never know what kind of software programmer make,may be they need some time picture with different extension,or my be they need to upload documents pfd or video file.that's why i am accpecpting all file to be uploaded but not allowing certain file to run on my server.
# 12  
Old 10-22-2008
Quote:
Originally Posted by aliahsan81
We never know what kind of software programmer make,may be they need some time picture with different extension,or my be they need to upload documents pfd or video file.that's why i am accpecpting all file to be uploaded but not allowing certain file to run on my server.
Yes, we already know that.

You did not answer my question.

Quote:
Then please explain why taking files that are not supposed to be executable and making them read only or read-write only will break current functionality?
# 13  
Old 10-22-2008
Ohh yes you are right,i didnt understand your question,yes what you are saying is also perfect.
Thx Neo.
# 14  
Old 10-23-2008
Quote:
Originally Posted by aliahsan81
Ohh yes you are right,i didnt understand your question,yes what you are saying is also perfect.
Thx Neo.
I am not suggesting that you do one, or the other.

I am saying you should do both, (1) use your .htaccess directives and (2) create a crontab to insure all files are not executable. You might also consider changing ownership (chown) of the uploaded files in combination with chmod.

This is called "defense in depth" - using more than one security defense in case the other one fails.

Relying on only one security control creates a higher risk of compromise.
Login or Register to Ask a Question

Previous Thread | Next Thread

9 More Discussions You Might Find Interesting

1. Solaris

Giving read write permission to user for specific directories and sub directories.

I have searched this quite a long time but couldn't find the right method for me to use. I need to assign read write permission to the user for specific directories and it's sub directories and files. I do not want to use ACL. This is for Solaris. Please help. (1 Reply)
Discussion started by: blinkingdan
1 Replies

2. UNIX for Dummies Questions & Answers

List the directories, having given pattern in the directories name, sorted by creation date

It is for HP-Unix B.11.31. Requirement: 1. List the directories, having given pattern in the directories name, sorted by creation date. Example: Directories with name "pkg32*" or "pkg33*" 2. On the output of 1. list the directories by creation date as sort order, with creation date... (2 Replies)
Discussion started by: Siva SQL
2 Replies

3. Red Hat

What is the use of this [Samba] create mask = 0777 ?

whats the use of this create mask = 0777 wht means mask ? (3 Replies)
Discussion started by: babinlonston
3 Replies

4. Shell Programming and Scripting

How to list all the files, directories and sub-directories in the current path except one directory?

Can anyone come up with a unix command that lists all the files, directories and sub-directories in the current directory except a folder called log.? Thank you in advance. (7 Replies)
Discussion started by: Manjunath B
7 Replies

5. UNIX for Dummies Questions & Answers

Using grep command to find the pattern of text in all directories and sub-directories.

Hi all, Using grep command, i want to find the pattern of text in all directories and sub-directories. e.g: if i want to search for a pattern named "parmeter", i used the command grep -i "param" ../* is this correct? (1 Reply)
Discussion started by: vinothrajan55
1 Replies

6. Shell Programming and Scripting

How to list all the directories, sub directories in a mount along with size in ascending order?

Hi , I am very new to unix as well as shell scripting. I have to write a script for the following requirement. In a particular mount, have to list all the directories and sub directories along with size of the directory and sub directory in ascending order. Please help me in this regard and many... (4 Replies)
Discussion started by: nmakkena
4 Replies

7. Shell Programming and Scripting

Script for parsing directories one level and finding directories older than n days

Hello all, Here's the deal...I have one directory with many subdirs and files. What I want to find out is who is keeping old files and directories...say files and dirs that they didn't use since a number of n days, only one level under the initial dir. Output to a file. A script for... (5 Replies)
Discussion started by: ejianu
5 Replies

8. Shell Programming and Scripting

check if multiple directories exist else create missing directories

Hi , I 'm trying to check if multiple directories exist on a server, if not create the missing ones and print " creating missing directory. how to write this in a simple script, I have made my code complex if ; then taskStatus="Schema extract directory exists, checking if SQL,Count and... (7 Replies)
Discussion started by: ramky79
7 Replies

9. UNIX for Dummies Questions & Answers

Directories and Files Protection in Apache Server

Hi everyone, I'm a newbie at this. We have a unix web server which has redhat 7.2 on it. It has apache server hosting our website at the moment. This is what I'm trying to do. Goal: I'm trying to put reports online so when clients come they can read it and what not. I want only clients viewing... (2 Replies)
Discussion started by: crazycelicagts
2 Replies
Login or Register to Ask a Question