LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 10-27-2013, 05:36 AM   #1
romanepo
LQ Newbie
 
Registered: Oct 2013
Posts: 6

Rep: Reputation: Disabled
Symlink Attack CentOS and WHM/Cpanel


Hi,
I installed new centos web-server,i use whm/cpanel control panel.
I see my server effect Symlink Attack.Which modify one by one all site.How to i stop running this attack and protect my server.

Best Regards
Roman E
 
Old 10-27-2013, 08:41 AM   #2
Habitual
LQ Veteran
 
Registered: Jan 2011
Location: Abingdon, VA
Distribution: Catalina
Posts: 9,374
Blog Entries: 37

Rep: Reputation: Disabled
https://www.linuxquestions.org/quest...61/#post222581
 
Old 10-29-2013, 02:33 AM   #3
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Quote:
Originally Posted by romanepo View Post
I see my server effect Symlink Attack. Which modify one by one all site. How to i stop running this attack and protect my server.
To limit this (prolly something I forgot):
- chroot Apache,
- and don't use excessive mounts inside the chroot area,
- and set restrictive access permissions,
- and set deny Apache to follow symbolic links (also see "SymLinksIfOwnerMatch"),
- and deny users from overriding Apaches configuration (including use of SSH or equivalent shell access),
- and harden PHP to have a per user open_basedir,
- and make Apache / PHP exec scripts as the users Id.
 
Old 10-29-2013, 02:47 AM   #4
ericson007
Member
 
Registered: Sep 2004
Location: Japan
Distribution: CentOS 7.1
Posts: 735

Rep: Reputation: 154Reputation: 154
And don't disable SELinux
 
1 members found this post helpful.
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
can't login in whm/cpanel just only me conflicker Linux - Newbie 9 06-02-2013 02:20 PM
cpanel/whm. M.Iftikhar Alam Linux - Newbie 1 12-03-2010 05:30 PM
Snort on CentOS with CPanel/WHM Question athomas Linux - Software 4 06-01-2010 07:29 AM
Cpanel/WHM Died at /usr/local/cpanel/Cpanel/Hulk.pm line 92. liang3391 Linux - Software 1 06-22-2009 02:02 PM
unexpected reboot - linux server - centos 5.1 - cPanel / WHM GiotisSL Linux - Server 1 03-28-2008 05:42 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 10:16 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration