Go to main content

Textpattern CMS support forum

You are not logged in. Register | Login | Help

#49 2008-04-03 15:44:48

MattD
Plugin Author
From: Monterey, California
Registered: 2008-03-21
Posts: 1,254
Website

Re: Important Security Question

Thank you, I figure if I know how to do it then I’ll be more prepared to argue with them.


My Plugins

Piwik Dashboard, Google Analytics Dashboard, Minibar, Article Image Colorpicker, Admin Datepicker, Admin Google Map, Admin Colorpicker

Offline

#50 2008-10-02 09:51:10

AndrijaM
Member
From: Belgrade, Serbia
Registered: 2007-12-22
Posts: 190
Website

Re: Important Security Question

I read everything said here, but I didnt notice this question:

I’m on a shared hosting, and txp complains when images, files and tmp folders are anything less then 777. But when I set them on 755, in diagnostics txp said not writable, but my site still works.

I contacted my host, and they cant do anything about.

I cant upload images and files through txp, but I can do it manualy through ftp.

That leaves the tmp folder. What does not writable here means to txp? Becouse everything works fine, as far as I can see.

So can I actualy set all on 755 and let txp complain?

Last edited by AndrijaM (2008-10-02 11:44:22)

Offline

#51 2008-10-02 17:06:15

ruud
Developer Emeritus
From: a galaxy far far away
Registered: 2006-06-04
Posts: 5,068
Website

Re: Important Security Question

What happens if you set it to 775?
I suspect that your website is setup to use your own username to create files/directories when you use FTP, but when using a script, that script is executed under a different username. This is why 777 works. 775 might work. I’d wonder how safe 777/775 is in a shared hosting environment…

Offline

#52 2008-10-02 17:20:19

AndrijaM
Member
From: Belgrade, Serbia
Registered: 2007-12-22
Posts: 190
Website

Re: Important Security Question

Ah, its not safe at all, I understand that :)

775 does not work neither.

But, what about if I set 755 even if txp doesnt like it? My site seems to work fine, whole day now.

Offline

#53 2008-10-02 17:58:53

ruud
Developer Emeritus
From: a galaxy far far away
Registered: 2006-06-04
Posts: 5,068
Website

Re: Important Security Question

If you don’t mind using FTP to upload files/images, sure, that’s not a problem for TXP… just a bit more work for you.

Offline

#54 2008-10-02 18:19:44

AndrijaM
Member
From: Belgrade, Serbia
Registered: 2007-12-22
Posts: 190
Website

Re: Important Security Question

Thats great! Than I dont have to change hosting company!

Only what about textpattern/tmp folder, is it safe if it is not writable?

Offline

#55 2008-10-02 18:37:31

ruud
Developer Emeritus
From: a galaxy far far away
Registered: 2006-06-04
Posts: 5,068
Website

Re: Important Security Question

It’s used for uploading files/images… but since you’re not using that it’s not a problem.

Offline

#56 2008-10-02 18:46:51

AndrijaM
Member
From: Belgrade, Serbia
Registered: 2007-12-22
Posts: 190
Website

Re: Important Security Question

Thanks a lot!

Offline

Board footer

Powered by FluxBB