LiteSpeed Technologies
Download Download     Blog Blog     Wiki Wiki     Forum Forum     Store     Contact Contact    

Go Back   LiteSpeed Support Forums > External Applications > CGI/Perl/Python > Running Perl / CGI from noexec partition

Reply
 
Thread Tools Display Modes
  #1  
Old 03-26-2007, 09:33 AM
ImZan ImZan is offline
New Member
 
Join Date: Mar 2007
Posts: 9
Default Running Perl / CGI from noexec partition

I want to mount the partition /home as noexec and then still be able to execute perl / cgi files. I know this is not possible under Apache. Is this possible or already supported under llitespeed **?

The main reason for this is that sometimes client's accounts get hacked. Apache is such that it can allow the running of programs that they upload sometimes to the server. While it's possible to track down the files and harden against those systems, I would like to prevent them from the beginning.
Reply With Quote
  #2  
Old 03-26-2007, 01:40 PM
mistwang mistwang is offline
LiteSpeed Staff
 
Join Date: May 2003
Location: New Jersey
Posts: 7,586
I think it may not be possible, even though there is a trick can execute an executable on noexec partition. But it is just a hack, may be disabled in later release.

To better deal with vnlerable scripts, my suggestion is to harden the security on your server as much as you can, and chroot if you can, even when they upload some bad scripts, the script may not able to execute in a chroot jail due to missing system commands or someting. Even when the script get executed, it will not able to do harm to your system files.

LSWS provides you such a platform that you can implement those easily. :-)
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -7. The time now is 01:11 PM.



- Archive - Top
© Copyright 2003-2011 LiteSpeed Technologies, Inc. All rights reserved. Privacy Policy.