The Arcive of Official vBulletin Modifications Site.It is not a VB3 engine, just a parsed copy! |
|
#1
|
|||
|
|||
Security question
If I incorporate a v-Bulletin forum as part of a larger site, what concerns, if any, should I have in regard to security protection for the rest of my domain -- i.e., hackers, viruses, etc. Are there any features that I should enable or disable to protect the rest of my domain on the same server?
Thanks very much. Mathman |
#2
|
|||
|
|||
As long as you keep your version of vB up-to-date and don't change settings unless you know what you're doing, there shouldn't be any problem.
|
#3
|
||||
|
||||
vb is very secure, and as long as you didn't enable html code posting for users you won't get in trouble
|
#4
|
|||
|
|||
Thanks for the responses, Filbert and Xenon.
Mathman |
#5
|
||||
|
||||
Of course, the server itself is another issue altogether. Hackers can get to your site via security holes in your server. Ensure you have a firewall running, you have the latest kernels, and the latest patches for apache, php and mysql.
|
#6
|
||||
|
||||
The greatest vulnerability I've seen around here comes from admins using passwords that are easy for others to guess. Be sure to choose your helpers with care and don't be generous giving access unless you need to.
|
#7
|
||||
|
||||
Quote:
I really want to close up the HTML code option for "normal" users, but wish to allow it for admins. Is this possible? Is there an override for admins (maybe even an implicit one?) Naturally I want to close the security hole to stop other potentially malicious users doing bad things with HTML in their posts but some of the admin's posts have been "prettied up" with some fancy HTML Can this be done? Dave |
#8
|
|||
|
|||
Please start your own thread in the appropriate forum.
|
#9
|
||||
|
||||
Quote:
|
#10
|
|||
|
|||
Hack Requests.
|
Thread Tools | |
Display Modes | |
|
|
X vBulletin 3.8.12 by vBS Debug Information | |
---|---|
|
|
More Information | |
Template Usage:
Phrase Groups Available:
|
Included Files:
Hooks Called:
|