August 16, 2004

Securing websites at Stanford using SSL

This probably will apply to other servers, but here what needs to be done to make sure that content is secure. First of all, transfer needs to be restricted to https so that no one can get to them unencrypted (via http). To do this, in .htaccess, place the following line
SSLRequireSSL on
Next set permissions so that no one else on the server can access the files except for the www server
% fs setacl dir system:www-servers read
% fs setacl dir system:anyuser none
% fs setacl dir system:authuser none
For more details, visit ITSS.

Posted by torque at August 16, 2004 11:34 PM | TrackBack
Comments

chat rooms - http://www.fooadultchat.com/

Posted by: chat rooms at December 4, 2006 4:21 AM
Post a comment









Remember personal info?