From: W. S. G. <sga...@nc...> - 2001-08-27 02:06:54
|
Jerry, Actually, I believe that it was your page that I saw that I could administer remotely. Anyway, I am fairly new to Apache (but not to Linux) and wanted to get IDS up and running, but I found that this security item was overlooked in the installation instructions (at least for a newbie like myself). I did notice that many others of the example pages were well secured. As I learn more about Apache, I plan to get things more secure and cleanly integrated. Thanks, Scott G. ----- Original Message ----- From: "Jerry Horn" <bq...@so...> To: "Scott Gaskins" <sga...@nc...>; <ids...@li...> Sent: Sunday, August 26, 2001 12:58 PM Subject: Re: [Ids-devel] IDS default install leaves admin accessible to everyone > I always check the security of any photo album I visit, and I've never seen > an insecure IDS installation (except for a site I run). my server is > running RedHat as well, and I was too lazy to fix the settings, so I didn't > even upload the .htaccess file. I'll prolly fix it tonight. the site I > manage is the "Delaware Wing, Civil Air Patrol" site. > > I love IDS, too... just wish it had support for guest or user uploads.. I > guess I'll write some coding for it myself.. :) > > Jerry Horn > > ----- Original Message ----- > From: "Scott Gaskins" <sga...@nc...> > To: <mo...@mu...> > Cc: <ids...@li...> > Sent: Sunday, August 26, 2001 2:52 PM > Subject: [Ids-devel] IDS default install leaves admin accessible to everyone > > > John, > > I just installed IDS and was in the process of trying to setup some > administative features when I noticed that, following all of your > instructions, I was able to access the admin page without having to put > in a password that I had created with htpasswd command. > I thought that this may be just a problem with my setup or installation, > so I went out to the example pages that you link from the > ids.sourceforge.net page and tried to access the admin pages for some of > those sites... and voila -- I could administer their pages at will! > |