This forum has been moved here:
Helicon Tech Community Forum

  Active TopicsActive Topics  Display List of Forum MembersMemberlist  HelpHelp   RegisterRegister  LoginLogin
Helicon Ape
 Helicon Tech : Helicon Ape
Subject Topic: Restrict Write Access Post ReplyPost New Topic
Author
Message << Prev Topic | Next Topic >>
Willids
Newbie
Newbie


Joined: 21 May 2009
Location: United Kingdom
Online Status: Offline
Posts: 15
Posted: 12 September 2011 at 2:41am | IP Logged Quote Willids

We have a wordpress blog and want to restrict write access to certain folders as I am sick of it been hacked.

Can this be done with Helicon APE ?

Thanks
Back to Top View Willids's Profile Search for other posts by Willids
 
Anton
Admin Group
Admin Group


Joined: 30 January 2007
Location: Ukraine
Online Status: Offline
Posts: 10520
Posted: 12 September 2011 at 3:24am | IP Logged Quote Anton

There are several opportunities for blocking access with Helicon Ape mod_auth...
Please choose the one which better suits you from the list here http://www.helicontech.com/ape/

__________________
Regards,
Anton
Back to Top View Anton's Profile Search for other posts by Anton
 
Willids
Newbie
Newbie


Joined: 21 May 2009
Location: United Kingdom
Online Status: Offline
Posts: 15
Posted: 12 September 2011 at 3:53am | IP Logged Quote Willids

The probloem we have is the site is being injected with eval code so we need something to stop the current being alterd and this is all new to me as I don't deal with Helicon much, so asking me to choose is like taking a kid into a sweet shop and asking them what they want.

We need to restrict access to the plugins folder to stop code being injected into the plugins.


Edited by Willids - 12 September 2011 at 4:26am
Back to Top View Willids's Profile Search for other posts by Willids
 
Anton
Admin Group
Admin Group


Joined: 30 January 2007
Location: Ukraine
Online Status: Offline
Posts: 10520
Posted: 12 September 2011 at 7:34am | IP Logged Quote Anton

One clarification: do you need to restrict access for specific IPs or for specific group of users or...?

__________________
Regards,
Anton
Back to Top View Anton's Profile Search for other posts by Anton
 
Willids
Newbie
Newbie


Joined: 21 May 2009
Location: United Kingdom
Online Status: Offline
Posts: 15
Posted: 14 September 2011 at 8:26am | IP Logged Quote Willids

we need to be able to restrict write access to the following folders/files for everyone, even the hosting customer so if he wants to write anything he will have to remove file then put back when finished.

Plugins
Themes
Upgrades
Uploads


Back to Top View Willids's Profile Search for other posts by Willids
 
Anton
Admin Group
Admin Group


Joined: 30 January 2007
Location: Ukraine
Online Status: Offline
Posts: 10520
Posted: 15 September 2011 at 2:40am | IP Logged Quote Anton

Ok, Let me explain. Helicon Ape is not capable of changing NTFS permissions like Write.
What we can suggest is limit access to the above folders by restricting POST and PUT requests.
The config will be:

<Limit POST PUT>
   Deny from All
</Limit>

This config should be put into the .htaccess files in above folders.

__________________
Regards,
Anton
Back to Top View Anton's Profile Search for other posts by Anton
 

If you wish to post a reply to this topic you must first login
If you are not already registered you must first register

  Post ReplyPost New Topic
Printable version Printable version

Forum Jump
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot delete your posts in this forum
You cannot edit your posts in this forum
You cannot create polls in this forum
You can vote in polls in this forum