• Introducing WebPros Cloud - a fully managed infrastructure platform purpose-built to simplify the deployment of WebPros products !  WebPros Cloud enables you to easily deliver WebPros solutions — without the complexity of managing the infrastructure.
    Join the pilot program today!
  • Support for BIND DNS has been removed from Plesk for Windows due to security and maintenance risks.
    If a Plesk for Windows server is still using BIND, the upgrade to Plesk Obsidian 18.0.70 will be unavailable until the administrator switches the DNS server to Microsoft DNS.

Security on plesk 7.5.6 (default permission user Everyone from C:\)

K

kbknkt

Guest
Hi, all
I have tried your plesk 7.5.6 (install in windows server
2003), butI have something problem about your software
Is there a place where I can find a guide on how to harden the
server's security?
If I use webadmin.php utility, I can have access to all the files
(view everything in my hard disk) in the server (a desirable hacker
tool) yet,. as an Admin of the server,. I'm not really happy with
this.
I found that your plesk software use permission for user Everyone from
C:\. I don't like that (for security I must be remove permission for
user Everyone from C:\, Leave only Administrator on C:\ )

I have removed user Everyone from C:\, and then Install your plesk
7.5.6 but it error to operation and roll back the install process).

I use permission for user Everyone from C:\ (Administrators - full
control over this folder, subfolders and files.SYSTEM - full control
over this folder, subfolders and files.Everyone - read and execute
permission for this folder only).
I also check permission for the plesk folder and Vitual host folder
following your document (plesk-7.5.6-win-reconfigurator-guide) and run
tool plesk reconfigurator
But, If I use webadmin.php utility, I can have access to all the files
(view everything in my hard disk) in the server (a desirable hacker
tool) yet,. as an Admin of the server,. I'm not really happy with
this.

I want "Remove user Everyone from C:\"
I want "Leave only Administrator on C:\"

etc..?
for security

Thanks
 
Back
Top