GetSimple Support Forum

Full Version: CMS Security
You're currently viewing a stripped down version of our content. View the full version with proper formatting.
Hi guys, what you think about GS security after publish a website?
After upload via FTP if we give a chmod 755 to all folder and subfolder except UPLOAD who we give chmod 777 to let user, work and modify by browser, it is sufficent about prevent hacking?
What you think?
chmod does not do much to prevent against hacking.
File permissions should always be locked down for group if not needed, especially if on a shared host.

But stuff like mod_sec and ip restrictions on admin root would be better.

And audit all your data files to make sure they are not viewable by web.