IIS
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsSystem AdministrationIIS

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old May 10th, 2006, 09:16 AM
userOne userOne is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Nov 2004
Posts: 1 userOne User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 25 m 30 sec
Reputation Power: 0
Write Permissions Security Issues - end user headaches!

My web host requires a support ticket to be submitted in order for folder's to be given write permissions. Folder's with write permissions have script execution disabled.
This creates problem's for the end user (me) when installing many pre-built applications, be it PHP or ASP.

IS it common on all shared hosting server's to function this way?

I would really like a control panel to turn on my own write permissions, I am running pre-built applications when I can, and don't have the knowledge to re-write the applications parameters to run on Windows servers sometimes. My host also lacks phpMyAdmin or any mySQL admin panel.
I am stuck in a Windows hosting world/career, and am looking for an open source CMS, I'm just not to sure about dotNetNuke.
It's a little bit stuffy over there at the dotNetNuke forum's exchange.

What should I do?

Reply With Quote
  #2  
Old May 10th, 2006, 09:51 AM
displeaser's Avatar
displeaser displeaser is offline
Periodically energetic Perler
Dev Shed Regular (2000 - 2499 posts)
 
Join Date: May 2005
Location: Dublin, Ireland
Posts: 2,266 displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)displeaser User rank is Colonel (50000 - 60000 Reputation Level)  Folding Points: 76661 Folding Title: Intermediate FolderFolding Points: 76661 Folding Title: Intermediate FolderFolding Points: 76661 Folding Title: Intermediate FolderFolding Points: 76661 Folding Title: Intermediate Folder
Time spent in forums: 4 Weeks 5 h 23 m 13 sec
Reputation Power: 532
Quote:
Originally Posted by userOne
IS it common on all shared hosting server's to function this way?


Hi,

I've never had to use a shared hosting env but I would imagine this is fairly standard. If you could remotely write and execute on a webserver there is nothing to stop you write an exploit up there and then execute it on the machine. Ie taking control of the server, damaging others users files, using it as a source for a DOS/DDOS attack.

Displeaser

Reply With Quote
  #3  
Old May 10th, 2006, 07:26 PM
Doug G Doug G is offline
Grumpier Old Moderator
Dev Shed God 12th Plane (10500 - 10999 posts)
 
Join Date: Jun 2003
Posts: 10,969 Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level)Doug G User rank is Major General (70000 - 90000 Reputation Level) 
Time spent in forums: 1 Month 1 Day 17 h 19 m 56 sec
Reputation Power: 802
My hosting company, www.crystaltech.com has offered a control panel for file permission settings for 4 or 5 years now. You don't need to bother support for file permissions, dns settings, etc.

Plus on your windows site you get php & mysql as well as asp. You can run mambo and other opensource php cms on the shared hosting servers.
__________________
======
Doug G
======
I didn't attend the funeral, but I sent a nice letter saying I approved
of it. --Mark Twain

Reply With Quote
Reply

Viewing: Dev Shed ForumsSystem AdministrationIIS > Write Permissions Security Issues - end user headaches!


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 5 hosted by Hostway
Stay green...Green IT