Skip to main content

Security advisor warning about enabling suexec

Comments

7 comments

  • cPRex Jurassic Moderator

    Hey there!  Is it possible that your server has the WHM >> Tweak Settings >> Enable File Protect option turned on?  If so, you could keep that enabled and just install mod_suexec through EasyApache 4 to resolve the issue.

    0
  • eitanc

    Thank you cPRex.

    I see there is an alternative for suexec called ruid2, that is considered faster than suexec but may be incompatible with mod_security (I have mod-security2 enabled).
    I read it here - https://www.domainindia.com/login/knowledgebase/689/-Mastering-Apache-Execution-Models-The-Ultimate-Comprehensive-Guide.html

    What should I choose between the two? (I use the CP solo edition)

    0
  • cPRex Jurassic Moderator

    Those compatibility issues have been resolved for some time, so you're free to choose whatever option you think will work best for your system. 

    0
  • eitanc

    Great, thank you.

    And if I will choose to use ruid2 - the security advisor scanner won't alert me again that suexec is missing (as I will remove it)? it will know that ruid2 is replacing it?

    0
  • cPRex Jurassic Moderator

    Correct - it should detect that and then stop the warning.

    0
  • eitanc

    Awesome, thanks a lot!!!

    0
  • cPRex Jurassic Moderator

    You're very welcome!

    0

Please sign in to leave a comment.