Stuff may be/look broke for a while.
Edit: 16 minutes. I think thats the fastest EVAR. And, I didn’t have to fudge with my theme.
Stuff may be/look broke for a while.
Edit: 16 minutes. I think thats the fastest EVAR. And, I didn’t have to fudge with my theme.
Now that I’m on the Secteam at LW, its obviously got me thinking harder about implementing better security measures on this VPS. One thing I’ve already done is install CSF (ConfigServer Security & Firewall, available at http://configserver.com), and set LFD (the login failure daemon) to send me emails about detected security issues.
I also have Apache2/ModSecurity2 (with our latest ruleset), however I’m finding that I probably need to make a few other adjustments, such as enabling SuPhp and open_basedir, locking down permissions, and most importantly, keeping up with new versions of software (omg, WordPress 2.6.2 already?!). These things I hope to accomplish very, very soon.
Since I’m geting so many spam comments on old posts lately (10-20 per day, that end up in the moderation queue), I turned off “Anyone can register” and turned on “Users must be registered and logged in to comment”. Email me if you have issues posting comments.
Edit: actually, not sure if this is going to even help. :/ Sometimes I hate the Internets.
Every time I upgrade this thing, it breaks the theme I’m using, so I either have to re-hack it to make it look like it did before, or pick a new theme. I also want to upgrade MySQL from 4.1 to 5.x on the server, but, again, worried that it will break something, and a reversal isn’t easy. Ok, so I guess I will keep putting it off then. Glad I talked myself out of this.
I will be adding/modifying this page with progress. Hopefully.
One very short-term goal is to update this site to WP 2.5. I hope it doesn’t break stuff.
Edit [9:25pm] – WP updated to 2.5 sucessfully!