Changes

From SME Server
Jump to navigationJump to search
286 bytes added ,  15:08, 25 June 2007
Line 59: Line 59:  
* ftp passes usernames and passwords over the internet in plain text; therefore, enabling ftp access from the internet using passwords is a security risk.
 
* ftp passes usernames and passwords over the internet in plain text; therefore, enabling ftp access from the internet using passwords is a security risk.
 
* I am unaware of any security impact simply from installing smeserver-remoteuseraccess, but almost everything you can do with it does have a potential impact on your server's security.
 
* I am unaware of any security impact simply from installing smeserver-remoteuseraccess, but almost everything you can do with it does have a potential impact on your server's security.
 +
* I don't know if groups are added to /etc/ftpusers by design or by accident.  If by design, there is probably a security implication in allowing group access to your FTP sites other than the obvious one (the more people who can access your server insecurely, the worse your security).
    
----
 
----
 
[[Category:Howto]]
 
[[Category:Howto]]

Navigation menu