NETBUYS.com
Security Manual

CHAPTER FIVE - Security

Security: How do I implement it?

5.1) SECURE WEB PAGES

5.2) SECURE PASSWORDS

5.3) SECURE FTP DIRECTORIES

5.4) SECURE CGI-BIN DIRECTORIES

 

5.1) SECURE WEB PAGES

How do I secure all web pages in a directory?

See Password Protection

 

5.2) SECURE PASSWORDS

How do I create a secure password?

Make it at least 6 characters long. Include at least one number, capital letter, or punctuation mark in the name.

5.3) SECURE FTP DIRECTORIES

How do I create secure ftp directories?

To make a directory named direct that can only be accessed by userid fred, go to the directory above direct and type chown fred direct. If you wish for only fred to read and write in it, type chmod 700 direct. If you wish to allow others to read these files you can type chmod a+rx direct after typing the first command.

The above only works if you are fred. If you not, but fred is in your group, ask us to make a new group for you and fred, your2grp. Then you can chgrp your2grp direct, and chmod g=rwx direct. If you do not wish anyone else to be able to read these files, use chmod o-rx direct.

To list the access permissions of a file, type ls -l file, and for a directory, ls -ld directory. r=read access, x=execute access, w=write access. After the first letter or hyphen (for file type), the first three letters apply to you, the second three letters apply to your group, the last three letters apply to everyone else. Execute access enables you to run programs or enter directories.

Examples of using chmod:

    PEOPLE                                    PERMISSIONS
    u = the file's user (or owner)            r = read access
    g = the file's group                      x = execute access
    o = others                                w = write access
    a = the user, the group, and others.

    chmod a+w =  let everyone write to the file
    chmod go-r = don't let people in the file's group or others to read
                 the file
    chmod g+x =  let people in the file's group execute the file

5.4) SECURE CGI-BIN DIRECTORIES

How do I secure all pages in a cgi-bin directory?

To stop people from being able to read your scripts under all circumstances, end your CGI scripts with the name .cgi.


BACK TO NETBUYS

email NetBuyssm.

Any Comments? Please Call: 800-634-9518

Internet Link Exchange
Member of the Internet Link Exchange

Copyright © 1997 Netbuys. All rights reserved.
Revised: October 14, 1997.