Current time: 05-08-2024, 02:55 AM Hello There, Guest! (LoginRegister)


Post Reply 
Folder permissions
Author Message
c0urier Offline
Junior Member
*

Posts: 89
Joined: Jun 2007
Reputation: 1
Post: #1
Folder permissions
Just a little suggestion regarding folder permissions/owner.

Yesterday something sad happened to one of our Customers, he "had" a Webspell site which was targeted by some sort of cross-site scripting which resulted in his page + backup's to be deleted. Everything his virtual user "vu****" owned was gone.
This led me to think, wouldn't it be a good idea to make the backup folder owned by someone else or only give the user read permission to the folder and the files in it, since now with 1.0.3 we have the possibility to chose which backup type users should have.

I don't even know if this would secure the users from issues like cross site scripting and the lose of files.

**PS: No need for info about choosing a more secure CMS system Wink.
(This post was last modified: 01-02-2010 06:12 PM by c0urier.)
01-02-2010 06:12 PM
Visit this user's website Find all posts by this user Quote this message in a reply
Post Reply 


Messages In This Thread
Folder permissions - c0urier - 01-02-2010 06:12 PM
RE: Folder permissions - kilburn - 01-02-2010, 08:08 PM
RE: Folder permissions - c0urier - 01-02-2010, 08:23 PM
RE: Folder permissions - kilburn - 01-02-2010, 08:29 PM
RE: Folder permissions - c0urier - 01-02-2010, 08:36 PM
RE: Folder permissions - c0urier - 02-05-2010, 08:26 AM
RE: Folder permissions - kilburn - 02-05-2010, 06:59 PM
RE: Folder permissions - c0urier - 02-05-2010, 08:12 PM
RE: Folder permissions - kilburn - 02-05-2010, 08:19 PM
RE: Folder permissions - c0urier - 02-06-2010, 09:22 PM
RE: Folder permissions - kilburn - 02-07-2010, 04:17 AM
RE: Folder permissions - RatS - 02-07-2010, 04:49 AM
RE: Folder permissions - c0urier - 02-07-2010, 05:36 AM

Forum Jump:


User(s) browsing this thread: 1 Guest(s)