Fullscreen
[Show/Hide Right Column]



Checking your server & TikiWiki settings


On tiki-admin_security.php, you can check for less secure server or TikiWiki settings.
Image


Check your files

File check (at tiki-admin_security.php) will detect any PHP files, but not images (.jpg, .gif, .png) or templates (.tpl) files which have been altered compared to the default, clean install of TikiWiki.

Image

It is normal that local.php be modified. If you check the file:
Image

It is also normal that tiki-install.php be modified (as you probably clicked to de-activate it). All other modified files should have been by you.

Please note that if you update your site via SVN, it's normal that some files are reported because the secDB database is typically only updated at release time.

On more recent versions of Tiki, it's also normal that language files are flagged because they are compressed after the security check is done.

Adding secDB information to the database (pre-Tiki3)

[+]

Robots Exclusion (Banning Search engines)

For some uses you may wish to prevent search engines from crawling, indexing or archiving your site.
See: Robots Exclusion Protocol

User/Content Security

see: Groups

Securing your webserver

If you are using Apache webserver, you can also secure it (and therefore, secure tiki) by means on enabling "mod_security".

See mod_security for more information.


related
More info:
http://tikiwiki.org/AdminSecurity

Alias names for this page
SecDB | SecurityAdmin | Security

Contributors to this page: xavi67871 points  , Marc Laporte9140 points  , mrjcleaver1923 points  and mlpvolt4388 points  .
Page last modified on Thursday 03 November, 2011 10:12:16 UTC by xavi67871 points .
The content on this page is licensed under the terms of the Creative Commons Attribution-ShareAlike License.

Site Language

Reference Guide

Keywords

These keywords serve as "hubs" for navigation within the Tiki documentation. They correspond to development keywords (bug reports and feature requests):



Tiki Newsletter

Delivered fresh to your email inbox!
Newsletter subscribe icon
Don't miss major announcements and other news!
Contribute to Tiki