Re: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-19 Thread Stormy
At 03:19 PM 9/19/2016 -0400, Rich Bowen wrote: On 09/19/2016 03:16 PM, Rich Bowen wrote: > You are *probably* encountering selinux permission problems. > Or, as this appears to be a Debian/Ubuntu machine, AppArmor. If this is the case, mpm-itk *might* be a possibility. I tried it, for somethin

Re: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-19 Thread Rich Bowen
On 09/19/2016 03:16 PM, Rich Bowen wrote: > > You are *probably* encountering selinux permission problems. > Or, as this appears to be a Debian/Ubuntu machine, AppArmor. > No doubt, if you investigate that line, you'll find lots of people > telling you to disable selinux, or set it to permi

Re: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-19 Thread Rich Bowen
On 09/14/2016 08:16 AM, Tom Hammond wrote: > Hello everyone, > > I have an Apache 2.2x server and would like to harden security so that > hackers can't get in easily to the Apache webserver. One suggestion is > to change the user/group for Apache to a non-privileged account. > > Currently th

Re: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-15 Thread Erik Dobák
i was told that chrooting that user might also be a good idea. what do you think? E On 14 September 2016 at 23:49, Richard wrote: > > > > > Date: Wednesday, September 14, 2016 17:37:36 -0400 > > From: Tom Hammond > > > >> From: Richard > >> Sent: Wednesday, September 14, 2016 5:06 PM > >> > >>

RE: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-14 Thread Richard
> Date: Wednesday, September 14, 2016 17:37:36 -0400 > From: Tom Hammond > >> From: Richard >> Sent: Wednesday, September 14, 2016 5:06 PM >> >>> Date: Wednesday, September 14, 2016 08:16:32 -0400 >>> From: Tom Hammond >>> >>> I have an Apache 2.2x server and would like to harden security

Re: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-14 Thread Rodrigo Cunha
Sent: Wednesday, September 14, 2016 5:06 PM > To: users@httpd.apache.org > Subject: Re: [users@httpd] Change user for Apache web server to a > non-privileged user? > > > > > Date: Wednesday, September 14, 2016 08:16:32 -0400 > > From: Tom Hammond > > > &g

RE: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-14 Thread Tom Hammond
iginal Message- From: Richard [mailto:lists-apa...@listmail.innovate.net] Sent: Wednesday, September 14, 2016 5:06 PM To: users@httpd.apache.org Subject: Re: [users@httpd] Change user for Apache web server to a non-privileged user? > Date: Wednesday, September 14, 2016 08:16:32 -0400 &g

Re: [users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-14 Thread Richard
> Date: Wednesday, September 14, 2016 08:16:32 -0400 > From: Tom Hammond > > I have an Apache 2.2x server and would like to harden security so > that hackers can't get in easily to the Apache webserver. One > suggestion is to change the user/group for Apache to a > non-privileged account. > >

AW: [users@httpd] Change user for Apache web server to a non-privileged user? [wd-vc]

2016-09-14 Thread Bremser, Kurt (AMOS Austria GmbH)
. The Earth sucks. Von: Tom Hammond [tomino...@gmail.com] Gesendet: Mittwoch, 14. September 2016 14:30 An: users@httpd.apache.org Betreff: Re: [users@httpd] Change user for Apache web server to a non-privileged user? [wd-vc] Hi Kurt, Thanks for the reply

Re: [users@httpd] Change user for Apache web server to a non-privileged user? [wd-vc]

2016-09-14 Thread Tom Hammond
[tomino...@gmail.com] > Gesendet: Mittwoch, 14. September 2016 14:16 > An: users@httpd.apache.org > Betreff: [users@httpd] Change user for Apache web server to a > non-privileged user? [wd-vc] > > Hello everyone, > > I have an Apache 2.2x server and would like to harden sec

AW: [users@httpd] Change user for Apache web server to a non-privileged user? [wd-vc]

2016-09-14 Thread Bremser, Kurt (AMOS Austria GmbH)
: users@httpd.apache.org Betreff: [users@httpd] Change user for Apache web server to a non-privileged user? [wd-vc] Hello everyone, I have an Apache 2.2x server and would like to harden security so that hackers can't get in easily to the Apache webserver. One suggestion is to change the

[users@httpd] Change user for Apache web server to a non-privileged user?

2016-09-14 Thread Tom Hammond
Hello everyone, I have an Apache 2.2x server and would like to harden security so that hackers can't get in easily to the Apache webserver. One suggestion is to change the user/group for Apache to a non-privileged account. Currently the user "fpp" is the default user for Apache which has access