I am really confused here after reading through tons of posts about suEXEC.
Now, I am not referring to phpsuEXEC, but just suEXEC which many say is a MUST for good security, however, take a look at this quote from http://httpd.apache.org/docs/1.3/suexec.html
---------
Used properly, this feature can reduce considerably the security risks involved with allowing users to develop and run private CGI or SSI programs. However, if suEXEC is improperly configured, it can cause any number of problems and possibly create new holes in your computer's security. If you aren't familiar with managing setuid root programs and the security issues they present, we highly recommend that you not consider using suEXEC.
---------
... and this one from the same site:
---------
Second, it is assumed you are familiar with some basic concepts of your computer's security and its administration. This involves an understanding of setuid/setgid operations and the various effects they may have on your system and its level of security.
---------
Also, check out this post:
http://forums.theplanet.com/lofiversion/in...php/t40851.html
...particularly this part:
---------
IT IS ABSOLUTELY CRITICAL THAT YOU DISABLE SUEXEC MODULE!
If you dont, people can simply execute files in /tmp as nobody, and create their own shell accounts on the box. neat huh?
---------
Okay, so here is my question:
If I go through WHM ---> Apache Update, and select all the usual modules per our needs but this time adding "suEXEC Module" WILL IT BE PROPERLY CONFIGURED?
Another quesiton; Will this break any scripts that are already installed on this production server?
Also, what exactly do I need to do regarding setuid/setgid? Should I change some config file somewhere on the server for setuid/setgid to tighten up security in this respect after enabling suEXEC?
Thanks for any input here :confused: :confused: :confused:
By the way, we are still at php 4.4.4. and I am getting into this whole thing wanting to upgrade to php 4.4.7
P.S. We are up to - WHM 10.8.0 cPanel 10.9.0-R10737