Skip to main content

Security Advisor, Main Account, SFTP

Comments

6 comments

  • cmo
    Since I can't edit my post, I thought I would update here. I have managed to take care of 1.A: I recompiled with mod_ruid2 1.C: I overlooked rpm -e frontpage a thousand times :o 1.E: That wasn't as scary as I thought, I like key + key password :cool: I could still use help with the rest.
    0
  • cmo
    Update # 2 Everything in section 1 except item 1.D has been sorted. I have no idea why it still says my kernel is out of date. Server Status > Server Information shows: [QUOTE]Linux my.host.com 2.6.32-431.1.2.0.1.el6.x86_64 #1 SMP Fri Dec 13 13:06:13 UTC 2013 x86_64 x86_64 x86_64 GNU/Linux
    In addition, I now have a new problem. I have managed to get a CSF rating of 137/140, but I am still able to send email out via very simple (not secure) PHP scripts. How do I stop this? I would like that all PHP email scripts have to authenticate using a real email account on the VPS. Apache settings: [QUOTE]Default PHP Version (.php files) = 5 PHP 5 Handler = dso Apache suEXEC = on Apache Ruid2 = on
    CSF SMTP settings: [QUOTE]SMTP_BLOCK = 1 SMTP_ALLOWLOCAL = 0 SMTP_ALLOWUSER = cpanel SMTP_ALLOWGROUP = mail,mailman
    cPanel Tweak settings for mail: [QUOTE]Prevent "nobody" from sending mail = on Restrict outgoing SMTP to root, exim, and mailman (FKA SMTP Tweak) = off (per CSF SMTP_BLOCK)
    0
  • cPanelMichael
    Hello :) The kernel issue is addressed here: [Case 85597] Security Advisor - kernel version The following thread should help address the email sending issue: Limiting Emails sent out by scripts Thank you.
    0
  • cmo
    Thank you so much for that link, Michael. I looked at that before but somehow overlooked the last part about renaming sendmail. THat's what I was looking for :) One quick follow-up question ... will renaming sendmail prevent WHM root messages and CSF messages from going out?
    0
  • cmo
    [quote="cmo, post: 1535772">One quick follow-up question ... will renaming sendmail prevent WHM root messages and CSF messages from going out?
    In CSF I found an option to change from sendmail to smtp and tested the email by issuing su while logged in as a user (enter 127.0.0.1 for LF_ALERT_SMTP). Will I need to make a similar setting change for WHM root messages?
    0
  • cPanelMichael
    There are no such configurable settings for messages sent out by cPanel/WHM. Feel free to test this and let us know if you no longer receive notifications from cPanel/WHM. Thank you.
    0

Please sign in to leave a comment.