<?xml version="1.0" encoding="utf-8" ?>
<?xml-stylesheet type="text/xsl" href="RSS_xslt_style.asp" version="1.0" ?>
<rss version="2.0" xmlns:WebWizForums="https://syndication.webwiz.net/rss_namespace/">
 <channel>
  <title>Web Wiz Support and Community Forums : How to make forum more secure?</title>
  <link>https://forums.webwiz.net/</link>
  <description><![CDATA[This is an XML content feed of; Web Wiz Support and Community Forums : Web Wiz Forums : How to make forum more secure?]]></description>
  <copyright>Copyright (c) 2006-2013 Web Wiz Forums - All Rights Reserved.</copyright>
  <pubDate>Wed, 15 Apr 2026 15:27:31 +0000</pubDate>
  <lastBuildDate>Thu, 01 Dec 2005 01:40:45 +0000</lastBuildDate>
  <docs>http://blogs.law.harvard.edu/tech/rss</docs>
  <generator>Web Wiz Forums 12.08</generator>
  <ttl>360</ttl>
  <WebWizForums:feedURL>https://forums.webwiz.net/RSS_post_feed.asp?TID=17355</WebWizForums:feedURL>
  <image>
   <title><![CDATA[Web Wiz Support and Community Forums]]></title>
   <url>https://forums.webwiz.net/forum_images/web_wiz_forums.png</url>
   <link>https://forums.webwiz.net/</link>
  </image>
  <item>
   <title><![CDATA[How to make forum more secure? :   dj air wrote:6 alphanumeric...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94668.html#94668</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=18669">Lynford</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 01&nbsp;December&nbsp;2005 at 1:40am<br /><br /><table width="99%"><tr><td class="BBquote"><img src="forum_images/quote_box.png" title="Originally posted by dj air" alt="Originally posted by dj air" style="vertical-align: text-bottom;" /> <strong>dj air wrote:</strong><br /><br />6 alphanumeric is good with where it is<BR><BR>the systems mentioned i dont belive are usable<BR></td></tr></table> <DIV>&nbsp;</DIV><DIV>Ta <IMG height=17 alt="Big smile" src="http://forums.webwiz.net/smileys/smiley4.gif" width=17 align=absMiddle border="0"></DIV>]]>
   </description>
   <pubDate>Thu, 01 Dec 2005 01:40:45 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94668.html#94668</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? : 6 alphanumeric is good with where...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94651.html#94651</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=2216">dj air</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 30&nbsp;November&nbsp;2005 at 5:01pm<br /><br />6 alphanumeric is good with where it is<br><br>the systems mentioned i dont belive are usable<br>]]>
   </description>
   <pubDate>Wed, 30 Nov 2005 17:01:34 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94651.html#94651</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? :   -boRg- wrote:However, it looks...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94642.html#94642</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=18669">Lynford</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 30&nbsp;November&nbsp;2005 at 2:40pm<br /><br /><table width="99%"><tr><td class="BBquote"><img src="forum_images/quote_box.png" title="Originally posted by -boRg-" alt="Originally posted by -boRg-" style="vertical-align: text-bottom;" /> <strong>-boRg- wrote:</strong><br /><br />However, it looks like your path is incorrect. The private directory is usually above the root of your web site, so you need to move up a directory or directories using ../&nbsp;&nbsp; eg:<BR><BR>../../private/db.mdb<BR><BR>The above will move up two parent directories<BR></td></tr></table> <DIV>&nbsp;</DIV><DIV>Spot on mate - Thanks very much. I am (I think) secure now.</DIV><DIV>&nbsp;</DIV><DIV>Is a 6 digit (alphanumeric) Database name ok, or should it be more ? Can it include symbols such as *&amp;^%$ ?</DIV><DIV>&nbsp;</DIV><DIV>Thanks again <IMG height=17 alt=Clap src="http://forums.webwiz.net/smileys/smiley32.gif" width=18 align=absMiddle border="0"></DIV>]]>
   </description>
   <pubDate>Wed, 30 Nov 2005 14:40:20 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94642.html#94642</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? : 1st turn off friendly HTTP errors...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94554.html#94554</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=1">WebWiz-Bruce</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 29&nbsp;November&nbsp;2005 at 12:45pm<br /><br />1st turn off friendly HTTP errors in IE so you get an accurate error message.<br><br>However, it looks like your path is incorrect. The private directory isusually above the root of your web site, so you need to move up adirectory or directories using ../&nbsp;&nbsp; eg:<br><br>../../private/db.mdb<br><br>The above will move up two parent directories<br>]]>
   </description>
   <pubDate>Tue, 29 Nov 2005 12:45:05 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94554.html#94554</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? : I think I&amp;#039;m stupid. Cancel...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94506.html#94506</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=18669">Lynford</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 28&nbsp;November&nbsp;2005 at 12:52pm<br /><br />I think I'm stupid. Cancel that, I know I am <IMG height=17 alt=Embarrassed src="http://forums.webwiz.net/smileys/smiley9.gif" width=17 align=absMiddle border="0"><DIV>&nbsp;</DIV><DIV>I have moved and renamed the Database, into&nbsp;the Private folder in my FTP program. i have also changed the Common.asp files to try to get them to point to the DB.</DIV><DIV>&nbsp;</DIV><DIV>Should the bit in the Common.asp files read <strong>private/nameofDB.mbd </strong>?</DIV><DIV>&nbsp;</DIV><DIV>I get a 'This page is not available' page.</DIV><DIV>&nbsp;</DIV><DIV>Thanks for any help <IMG height=17 alt="Big smile" src="http://forums.webwiz.net/smileys/smiley4.gif" width=17 align=absMiddle border="0"></DIV>]]>
   </description>
   <pubDate>Mon, 28 Nov 2005 12:52:48 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94506.html#94506</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? : Ahh, the question for the ages....]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94501.html#94501</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=19649">JJLatWebWiz</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 28&nbsp;November&nbsp;2005 at 11:51am<br /><br />Ahh, the question for the ages.  I've seen the moderators refer this question many times to the <a href="http://www.webwiz.net/web_wiz_forums/docs_menu.asp?mode=forum" target="_blank">installation instuctions</a>, which include a link to moving and renaming the Access MDB.  <br /><br />If you use the Access version, making that Access MDB inaccessible is critical.  If the MDB is in a folder that can be accessed directly by a web browser, the MDB as a file can easily be downloaded and then opened locally in MS Access.  If you can't put the MDB in a folder above your web root, you should assume a hacker can download it at will and you need to seriously look for a better host.  You could use a username and password on the MDB, but Access security is notoriously weak and pointless for keeping a semi-savvy hacker out.<br /><br />For better security, pay for an MS SQL hosting plan.<br /><br />But that's just the first line of defense to protect the basic integrity of the database.  After that you have to make sure you're using the most secure ASP code.  Remember that hackers are always looking for holes so you have to check regularly for code updates.<br /><br />Use extreme caution when changing the default forum settings, especially the types of files users are allowed to upload.  If a hacker can upload his own ASP file, your entire site is wide open for all sorts of hacker fun.<br /><br />Adjust folder security so that web users have Read-Only access to all folders except the folders for the Access MDB and uploads.<br /><br />And last, the only thing that will save you from the worst disaster that can happen is the acceptance that a hacker WILL eventually break in and destroy everything you've done.  WHEN a hacker hits your site, the only protection will be a good and frequent backup.]]>
   </description>
   <pubDate>Mon, 28 Nov 2005 11:51:38 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94501.html#94501</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? : 1, you need ot edit the folders...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94422.html#94422</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=2216">dj air</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 27&nbsp;November&nbsp;2005 at 10:36am<br /><br />1, you need ot edit the folders permissions somehow sometimes it has to be done by the web host or a web file manager.<br><br>you uncheck the write permissions. and only allow read.<br><br>2.you can allow uploading but that does pose a threat, andforum/forum_images is the only folder that requires write permissionsand also the database folder if you have the database inside the roootfolder <br><br>thats if using access. for the database folder.<br><br>the database folder requires write acces sand read, but if outside the root folder its at less risk for attack on your website.<br><br><br>to help prevent remote submmissions and also prevent robot hacking forum submissions keep the security images active.<br><br>alsways have a alpha numericval password and dont have a directorypassword. best password is a alpha numerical and 8 charecters or above.<br>]]>
   </description>
   <pubDate>Sun, 27 Nov 2005 10:36:13 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94422.html#94422</guid>
  </item> 
  <item>
   <title><![CDATA[How to make forum more secure? : Hi. I read some posts about the...]]></title>
   <link>https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94373.html#94373</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="https://forums.webwiz.net/member_profile.asp?PF=21859">lik&#101;future</a><br /><strong>Subject:</strong> 17355<br /><strong>Posted:</strong> 26&nbsp;November&nbsp;2005 at 1:07pm<br /><br />Hi. I read some posts about the Hacker, but still have no idea about how to prevent my website be damaged.<DIV>&nbsp;</DIV><DIV>First question, maybe stupid, how to disable the write permission for my site? in the file explorer or IIS?</DIV><DIV>&nbsp;</DIV><DIV>secondly,&nbsp;I want to allow my users to upload file to the forum. So the folder has the write permission. Does it mean I am on the risk of Turkish hacker and no way to solve the problem?</DIV><DIV>&nbsp;</DIV><DIV>and what else&nbsp;do I need pay attension to for the security?</DIV><DIV>&nbsp;</DIV><DIV>thanks.</DIV>]]>
   </description>
   <pubDate>Sat, 26 Nov 2005 13:07:44 +0000</pubDate>
   <guid isPermaLink="true">https://forums.webwiz.net/how-to-make-forum-more-secure_topic17355_post94373.html#94373</guid>
  </item> 
 </channel>
</rss>