Recommended security setting

Author Message

Leandro Villani

Wednesday 28 December 2005 3:12:42 am

Hi,

I'm about to publish a small site, that will run eZ Publish 3.7.2 on Apache 2 and PHP 4.4.1.

I want to know if there are some recommended security settings to do before the site go live (site.ini, httpd.conf, etc.).

More details:

- The site is based on the corporate sample, have one siteaccess for public access and other siteaccess for administration interface;
- On the public siteaccess, users cannot login and all the content is read only (except for contact us form);
- The administrative siteaccess uses the default design with no customizations;
- The cache settings are already done as recommended in many forum messages.

Thank you.
Leandro Villani.

Leandro Villani

Friday 30 December 2005 4:51:49 am

Hi,

There is no critical security configurations?

Kristian Hole

Monday 02 January 2006 12:15:18 am

Take a look at this:

http://ez.no/doc/ez_publish/technical_manual/3_6/installation/virtual_host_setup

Kristian

http://ez.no/ez_publish/documenta...tricks/show_which_templates_are_used
http://ez.no/doc/ez_publish/techn...te_operators/miscellaneous/attribute

Powered by eZ Publish™ CMS Open Source Web Content Management. Copyright © 1999-2014 eZ Systems AS (except where otherwise noted). All rights reserved.

eZ debug

Timing: Jan 31 2025 14:16:09
Script start
Timing: Jan 31 2025 14:16:09
Module start 'layout'
Timing: Jan 31 2025 14:16:09
Module start 'content'
Timing: Jan 31 2025 14:16:09
Module end 'content'
Timing: Jan 31 2025 14:16:09
Script end

Main resources:

Total runtime0.0162 sec
Peak memory usage2,048.0000 KB
Database Queries3

Timing points:

CheckpointStart (sec)Duration (sec)Memory at start (KB)Memory used (KB)
Script start 0.00000.0058 588.2500151.2266
Module start 'layout' 0.00580.0025 739.476636.6797
Module start 'content' 0.00830.0066 776.156390.1719
Module end 'content' 0.01490.0013 866.328133.9922
Script end 0.0162  900.3203 

Time accumulators:

 Accumulator Duration (sec) Duration (%) Count Average (sec)
Ini load
Load cache0.002213.5127140.0002
Check MTime0.00116.8403140.0001
Mysql Total
Database connection0.00074.111210.0007
Mysqli_queries0.003622.034030.0012
Looping result0.00000.075110.0000
Template Total0.00106.110.0010
Template load0.00085.031210.0008
Template processing0.00021.042210.0002
Override
Cache load0.00063.791810.0006
General
dbfile0.002917.619580.0004
String conversion0.00000.039740.0000
Note: percentages do not add up to 100% because some accumulators overlap

Templates used to render the page:

UsageRequested templateTemplateTemplate loadedEditOverride
1print_pagelayout.tpl<No override>extension/community/design/community/templates/print_pagelayout.tplEdit templateOverride template
 Number of times templates used: 1
 Number of unique templates used: 1

Time used to render debug report: 0.0001 secs