PHP Web Host - Quality Web Hosting For All PHP Applications $35/month $250/year (Unlimited) - $25/month - 200,000 impressions - Your Ad Could be Here - Click For Details
  Login or Register
 • Home • Downloads • Your Account • Forums • 

View next topic
View previous topic


Google
 
Web RavenPHPScripts (This Site)
Post new topic   Reply to topic
Author Message
dcasmr
Worker
Worker


Joined: Feb 06, 2004
Posts: 147

PostPosted: Sun Jan 02, 2005 5:32 pm Reply with quote Back to top

Hi all,

Can anyone suggest what is good to have in .htaccess based on your own experience of bad things to ban / exclude etc?
Also is .staccess required? The file is blank.

Thanks,
dcasmr



Options All -Indexes
DirectoryIndex index.php index.htm index.html

# -------------------------------------------
# Start of NukeSentinel(tm) admin.php Auth
# -------------------------------------------
<Files .staccess>
deny from all
</Files>

<Files admin.php>
<Limit GET POST PUT>
require valid-user
</Limit>
AuthName "Restricted"
AuthType Basic
AuthUserFile /path/to/your/.staccess

#Check for Santy Worms and redirect them to a fake page
RewriteCond %{HTTP_USER_AGENT} ^LWP [NC,OR]
RewriteCond %{REQUEST_URI} ^visualcoders [NC,OR]
RewriteCond %{QUERY_STRING} rush=([^&]+) [NC,OR]
RewriteCond %{REQUEST_URI} ^envidiosos [NC,OR]
RewriteCond %{REQUEST_URI} ^civa [NC,OR]
#variant-6 redirect all inner
Only registered users can see links on this board!
Get registered or login to the forums!
request
RewriteCond %{QUERY_STRING} ^(.*)http://(.*) [NC,OR]
#variant-7 redirect all inner http request regardless if encoded
RewriteCond %{QUERY_STRING} ^(.*)http%3A%2F%2F(.*) [NC]
RewriteRule ^.*$
Only registered users can see links on this board!
Get registered or login to the forums!
[R,L]

</Files>

# -------------------------------------------
# Start of NukeSentinel(tm) DENY FROM area
# -------------------------------------------
View user's profile Send private message
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 16987
Location: Kansas

PostPosted: Wed Jan 05, 2005 5:13 am Reply with quote Back to top

That's fine for .htaccess. .staccess is only required if you are using CGIAuth instead of HTTPAuth.
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
nb
New Member
New Member


Joined: Jan 07, 2005
Posts: 4

PostPosted: Fri Jan 07, 2005 3:51 pm Reply with quote Back to top

i have a neuromuscular diseases (MITO) legally blind
its hard to type and see all the codeing
my site was hacked 2 times
http://nb-productions.com/ i have install Nuke Sentinel
but dont no if its set up right htaccess ect any way you can look and see run a
test ? Bob Marion was going to look at it for me but he has ben busy e-mail me at
Only registered users can see links on this board!
Get registered or login to the forums!
if you can help
View user's profile Send private message Visit poster's website
nb
New Member
New Member


Joined: Jan 07, 2005
Posts: 4

PostPosted: Fri Jan 07, 2005 11:19 pm Reply with quote Back to top

nb, to late site was hacked makes 3 times will not hacked this time just deface
Only registered users can see links on this board!
Get registered or login to the forums!
View user's profile Send private message Visit poster's website
Raven
Site Admin/Owner


Joined: Aug 27, 2002
Posts: 16987
Location: Kansas

PostPosted: Sat Jan 08, 2005 1:46 am Reply with quote Back to top

Would you like me to install/setup NukeSentinel on your site?
View user's profile Send private message Visit poster's website AIM Address Yahoo Messenger
nb
New Member
New Member


Joined: Jan 07, 2005
Posts: 4

PostPosted: Sat Jan 08, 2005 2:20 am Reply with quote Back to top

yes if you have the time tell me what info you will need send to
Only registered users can see links on this board!
Get registered or login to the forums!
ill send the info back
View user's profile Send private message Visit poster's website
Display posts from previous:       
Post new topic   Reply to topic

View next topic
View previous topic
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
Forums ©
 

All logos and trademarks in this site are property of their respective owner.
The comments are property of their posters, all the rest © 2002-2011 by Raven

You can syndicate our news using the file xml

CSE HTML Validator Helped Clean up This Page! [Valid RSS] valid RSS 2.0 Valid robots.txt Stop Spam Harvesters, Join Project Honey Pot

Website engines core code is © copyright by PHP-Nuke but has been heavily patched and modified by myself and others.
PHP-Nuke is a free software released under the GNU/GPL.


:: fisubice phpbb2 style by Daz :: PHP-Nuke theme by www.nukemods.com ::
:: fisubice Theme Modified by the RavenNuke™ Team ::

:: W3C CSS Compliance Validation :: W3C HTML 4.01 Transitional Compliance Validation ::

zerosum