vb.org Archive

vb.org Archive (https://vborg.vbsupport.ru/index.php)
-   vBulletin Pre-Sales Questions (https://vborg.vbsupport.ru/forumdisplay.php?f=26)
-   -   Security question (https://vborg.vbsupport.ru/showthread.php?t=54561)

Mathman 06-20-2003 04:51 PM

Security question
 
If I incorporate a v-Bulletin forum as part of a larger site, what concerns, if any, should I have in regard to security protection for the rest of my domain -- i.e., hackers, viruses, etc. Are there any features that I should enable or disable to protect the rest of my domain on the same server?

Thanks very much.

Mathman

filburt1 06-20-2003 05:13 PM

As long as you keep your version of vB up-to-date and don't change settings unless you know what you're doing, there shouldn't be any problem.

Xenon 06-21-2003 10:30 AM

vb is very secure, and as long as you didn't enable html code posting for users you won't get in trouble :)

Mathman 06-21-2003 08:59 PM

Thanks for the responses, Filbert and Xenon.:)

Mathman

Erwin 06-23-2003 05:03 AM

Of course, the server itself is another issue altogether. Hackers can get to your site via security holes in your server. Ensure you have a firewall running, you have the latest kernels, and the latest patches for apache, php and mysql.

Talisman 06-23-2003 05:35 AM

The greatest vulnerability I've seen around here comes from admins using passwords that are easy for others to guess. Be sure to choose your helpers with care and don't be generous giving access unless you need to.

DaveRobbo 06-24-2003 08:59 AM

Quote:

06-21-03 at 12:30 PM Xenon said this in Post #3
vb is very secure, and as long as you didn't enable html code posting for users you won't get in trouble :)
This isn't really a pre-sales question from me - I'm already a fully paid-up member ... but this seemed a good place to ask.

I really want to close up the HTML code option for "normal" users, but wish to allow it for admins. Is this possible? Is there an override for admins (maybe even an implicit one?)

Naturally I want to close the security hole to stop other potentially malicious users doing bad things with HTML in their posts but some of the admin's posts have been "prettied up" with some fancy HTML

Can this be done?

Dave

filburt1 06-24-2003 10:35 AM

Please start your own thread in the appropriate forum. :)

DaveRobbo 06-24-2003 11:47 AM

Quote:

Today at 12:35 PM filburt1 said this in Post #8
Please start your own thread in the appropriate forum. :)
Please tell me which is the appropriate forum then? All the others seem to be about requests for new hacks or questions about existing hacks. I can't see a plain "questions" forum except for this one

filburt1 06-24-2003 12:54 PM

Hack Requests.


All times are GMT. The time now is 03:26 PM.

Powered by vBulletin® Version 3.8.12 by vBS
Copyright ©2000 - 2025, vBulletin Solutions Inc.

X vBulletin 3.8.12 by vBS Debug Information
  • Page Generation 0.01079 seconds
  • Memory Usage 1,729KB
  • Queries Executed 10 (?)
More Information
Template Usage:
  • (1)ad_footer_end
  • (1)ad_footer_start
  • (1)ad_header_end
  • (1)ad_header_logo
  • (1)ad_navbar_below
  • (2)bbcode_quote_printable
  • (1)footer
  • (1)gobutton
  • (1)header
  • (1)headinclude
  • (6)option
  • (1)pagenav
  • (1)pagenav_curpage
  • (1)pagenav_pagelink
  • (1)post_thanks_navbar_search
  • (1)printthread
  • (10)printthreadbit
  • (1)spacer_close
  • (1)spacer_open 

Phrase Groups Available:
  • global
  • postbit
  • showthread
Included Files:
  • ./printthread.php
  • ./global.php
  • ./includes/init.php
  • ./includes/class_core.php
  • ./includes/config.php
  • ./includes/functions.php
  • ./includes/class_hook.php
  • ./includes/modsystem_functions.php
  • ./includes/class_bbcode_alt.php
  • ./includes/class_bbcode.php
  • ./includes/functions_bigthree.php 

Hooks Called:
  • init_startup
  • init_startup_session_setup_start
  • init_startup_session_setup_complete
  • cache_permissions
  • fetch_threadinfo_query
  • fetch_threadinfo
  • fetch_foruminfo
  • style_fetch
  • cache_templates
  • global_start
  • parse_templates
  • global_setup_complete
  • printthread_start
  • pagenav_page
  • pagenav_complete
  • bbcode_fetch_tags
  • bbcode_create
  • bbcode_parse_start
  • bbcode_parse_complete_precache
  • bbcode_parse_complete
  • printthread_post
  • printthread_complete