Index: [Article Count Order] [Thread]

Date:  Thu, 31 Jul 2008 07:47:01 -0500
From:  Chris Gebhardt - VIRTBIZ Internet <cobaltfacts (at mark) virtbiz.com>
Subject:  [coba-e:13658] Re: apache suexec
To:  coba-e (at mark) bluequartz.org
Message-Id:  <4891B445.1030103 (at mark) virtbiz.com>
In-Reply-To:  <0d1e01c8f30a$80a2baf0$967da8c0@thomasferrari>
References:  <819609.69984.qm (at mark) web65614.mail.ac4.yahoo.com> <0d1e01c8f30a$80a2baf0$967da8c0 (at mark) thomasferrari>
X-Mail-Count: 13658


thomas wrote:

> So I am looking for at way to implement some security and also getting 
> the uploads files / created files from http to be owned by the 
> siteadmin. That way he can overwrite the files from ftp, He can't do 
> that with files created by apache:apache, unless they have chmod 777, 
> which is very insecure.

Hi Thomas
Reminder to always "inline post".   Don't reply on top.  Your reply 
should always be BENEATH what you are replying to.

This is an issue that we have observed occasionally with dynamically 
created content from a CMS such as Joomla or Wordpress or the like. 
Then a user wants to make changes via FTP and that winds up requiring a 
support ticket so that our techs can run a quick chown -R for them.

-- 
Chris Gebhardt
VIRTBIZ Internet Services
Access, Web Hosting, Colocation, Dedicated
www.virtbiz.com | toll-free (866) 4 VIRTBIZ