five years ago I installed an Apache server in a chroot jail.
I am installing a new server now, on CentOS 5.2.
Apache version is 2.2.3
Trying to find a tutorial on how to chroot Apache on CentOS or RHEL, I can't find any!
Chrooting Apache is not used anymore?
Is there a better way to do the job?
Is it recommended, anyway?
I generally run apache as a standard user who has very limited access with suphp and suexec. So that each users scripts are owned by them and execute with their (very limited) privileges. It also lets me make sure that nothing nefarious is being done outside of my /var/www directory.
When I move into the future with my new server setup I'll most likely update to either mod security or look at a slightly different setup. This, however, has worked well so far.
Chrooting apache on any given flavor of linux isn't significantly different, so a debian tutorial is going to largely be similar to a redhat tutorial except for the rpm/deb commands.
|All times are GMT -5. The time now is 10:36 AM.|