Hi,
First answer for this question
________________________________________________________
"1. Joomla adds an extra layer of management between the actual content and how 
it gets presented to web visitors.  The actual content and site settings are 
stored in a mysql database.


Question: what if our "joomla" site gets hacked some how and vandalized?  How 
easy is it to roll back changes and restore a site after it's been damaged?  
With our current system it's real easy ... I just rerun the web site rsync 
command and yell at the ISP to fix the security hole.  If the problem is all 
contained within our mysql database and user managment system, then that could 
be harder to deal with.  These are things we'll have to explore, but I assume 
there is a way to backup the entire site off line and restore it later if there 
is a problem?  We supposedly have that capability with our phpbb forum, but the 
restore side of this has never been tested.  Security and recoverability and 
fixability is something we need to consider if we were to make an official move 
from a simple system to a far more complex system."
_____________________________________________________________________________________________________
Generally:

At first you have to be sure to make the whole installation safe. 

Only two or three people should have the acess to it and have authority to 
change things. As Torsten already said: it is a mount of work to keep pages 
like the wiki clean, so only few authors. Changing passwords regulary should be 
clear. 
No shared servers!
Make a backup! It is better on a local server apart from the webserver. Not the 
system avsim.com used! ;-). In the case of an hack: 
you can make list of those files which has changed, there is a script available 
for it. 
But it is better to delete everything and then new installation with the 
backup. 


      
------------------------------------------------------------------------------
Crystal Reports - New Free Runtime and 30 Day Trial
Check out the new simplified licensing option that enables unlimited
royalty-free distribution of the report engine for externally facing 
server and web deployment.
http://p.sf.net/sfu/businessobjects
_______________________________________________
Flightgear-devel mailing list
Flightgear-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/flightgear-devel

Reply via email to