Search The ForumSearch   RegisterRegister  LoginLogin

General Issues

 AfterLogic Forum : General Issues
Subject Topic: Exploit Found. Post ReplyPost New Topic
Author
Message << Prev Topic | Next Topic >>
pehden
Newbie
Newbie
Avatar

Joined: 23 December 2007
Location: United States
Online Status: Offline
Posts: 25
Posted: 29 November 2010 at 11:33am | IP Logged Quote pehden

Im not sure if I am the only one who has tried this but for the new version the
settings are set in an xml file, most linux servers show these as text or will
show them as rss feed or simmilar, so if some one knows your version then they can
by default sett the files.
Back to Top View pehden's Profile Search for other posts by pehden Visit pehden's Homepage
 
Igor
AfterLogic Support
AfterLogic Support


Joined: 24 June 2008
Location: United States
Online Status: Offline
Posts: 6031
Posted: 30 November 2010 at 12:10am | IP Logged Quote Igor

That's exactly why we place .htaccess file under the data folder, its content

Code:
Deny from all


ensures that the data folder and any files under it cannot be accessed from web browser. Of course, we assume that the rest of web server environment is configured correctly and files like .htaccess are properly processed.

--
Regards,
Igor, AfterLogic Support
Back to Top View Igor's Profile Search for other posts by Igor
 
pehden
Newbie
Newbie
Avatar

Joined: 23 December 2007
Location: United States
Online Status: Offline
Posts: 25
Posted: 16 December 2010 at 8:53am | IP Logged Quote pehden

I have done that but for some reason i can still see the directory listing, do I need anything else?
Back to Top View pehden's Profile Search for other posts by pehden Visit pehden's Homepage
 
Igor
AfterLogic Support
AfterLogic Support


Joined: 24 June 2008
Location: United States
Online Status: Offline
Posts: 6031
Posted: 17 December 2010 at 12:02am | IP Logged Quote Igor

Maybe the file is disregarded by your webserver, you should check its configuration. If you're using some hosting account, request assistance from your hosting provider tech support.

--
Regards,
Igor, AfterLogic Support
Back to Top View Igor's Profile Search for other posts by Igor
 

If you wish to post a reply to this topic you must first login
If you are not already registered you must first register

  Post ReplyPost New Topic
Printable version Printable version

Forum Jump

Powered by Web Wiz Forums version 7.9
Copyright ©2001-2004 Web Wiz Guide