LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 11-05-2004, 09:47 PM   #1
mrgoodbytes
LQ Newbie
 
Registered: Oct 2004
Posts: 3

Rep: Reputation: 0
slashdotted and security


well I've had something ready to be released onto the web for a few months now and have been dragging my feet because it'll be slashdotted.

I cant keep waiting, and I'm hoping someone can kick me in the right direction.

A large majority of the site is hosted [and my host assures me they can handle it]. Its the typical cpanel utility and apache so my big concern there is security. I need to know if there are any common holes/mistakes I need to be on the lookout for?

And a small but cruicle part is run from my home server. Apaches setup and running but I am still very uncompfortable with apache. I could really use some advice with the home side [I'm not asking for someone to hold my hand, I just need direction]. I know nothing about managing traffic load or security settings [I'm sure they'll crash the server reguardless but I need to atleast try].
 
Old 11-08-2004, 03:49 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
A large majority of the site is hosted [and my host assures me they can handle it]. Its the typical cpanel utility and apache so my big concern there is security. I need to know if there are any common holes/mistakes I need to be on the lookout for?
If this is shared hosting, then your hoster is (or should be held) responsable for OS level maintenance and security.
If you can't stop unnecessary services, ask them, if they didn't update packages, ask them, if they put up a firewall, ask them what services it allows. Next what's your Cpanel site built on? Is it static content or an Apache/MySQL/PHP? Anything else? Forum? Custom built PHP?


And a small but cruicle part is run from my home server. Apaches setup and running but I am still very uncompfortable with apache. I could really use some advice with the home side [I'm not asking for someone to hold my hand, I just need direction]. I know nothing about managing traffic load or security settings
Is the server behind a Cable/xDSL modem/router? In a DMZ? All packages updated? Firewall running? No unnecessary services exposed? What's your home site built on? Apache/MySQL/PHP? Anything else?
Please check out the LQ FAQ: Security references.
Also if you're expecting a lot of or huge amount data transfers hosting stuff at home will be a liability for your site and make it unavailable if your server can't cope with the load or b0rks down. Better spread risks and take that to another hoster, but that's just IMHO.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[Security Questions] Last Login, how good is this feature for security breach info? t3gah Linux - Security 2 06-14-2005 01:02 AM
FC2 Dual Boot Problem Slashdotted... THX75 Fedora 0 05-23-2004 05:57 PM
todays requirements regarding security (not limited to linux security) markus1982 Linux - Security 8 04-25-2004 10:58 PM
Seems we've been slashdotted! Astro LQ Suggestions & Feedback 1 03-06-2004 10:49 PM
What does slashdotted mean? Culbert General 4 10-09-2003 11:07 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 04:46 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration