vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   Official vB.com Announcements (https://vborg.vbsupport.ru/forumdisplay.php?f=240)
-   -   Security Tips Regarding Admin Permissions (https://vborg.vbsupport.ru/showthread.php?t=240247)

vB.Org System 04-11-2010 05:50 PM

Security Tips Regarding Admin Permissions
 
Although it should be apparent that no one should be given Admin access unless they are completely trustworthy, we do recognized that sometimes these things do occur. While we still strongly recommend that you only give Admin access to people you thoroughly trust, you can still minimize potential security issues by limiting the permissions you make available to your Admins. The place to do that is here:

Admin CP -> Usergroups -> Administrator Permissions

You may need to make yourself a Super Admin in order to do this. Edit this section of config.php:

// ****** SUPER ADMINISTRATORS ******
// The users specified below will have permission to access the administrator permissions
// page, which controls the permissions of other administrators
$config['SpecialUsers']['superadministrators'] = 'x';


...and replace x with your userid (not user name.)

In particular you should not allow these permissions for any Admin that is not 100% trustworthy:

Can Administer Styles
Can Administer Languages
Can Administer FAQs



More...


All times are GMT. The time now is 04:12 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01539 seconds
  • Memory Usage 1,708KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (1)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete