Disabling 'Allow Anonymous Access' For FTP In New CPanel Accounts
Apr 2, 2008
Everytime a new account is created in WHM/cPanel, the "Allow Annonymous Access for FTP" option is enabled by default. Since this is something I want turned off for all new accounts... does anyone know a way of switching this off globally in cPanel/WHM so that every new account will have this turned off by default?
Many of our clients create e-mail accounts that forward incoming e-mail to mailboxes hosted on other e-mail services. e.g., Gmail.
Lately, though, a handful of these accounts have been receiving a lot of spam (i.e., UCE) and that's been causing a lot of damage to our reputation with these other e-mail services because the message that's being forwarded appears to have originated from our servers.
Code: <someuser@gmail.com>: host gmail-smtp-in.l.google.com[64.233.183.27] said: 552-5.7.0 This message was blocked because its content presents a potential 552-5.7.0 security issue. Please visit 552-5.7.0 http://support.google.com/mail/bin/answer.py?answer=6590 to review our 552 5.7.0 message content and attachment content guidelines. g20si28780491ici.46 - gsmtp (in reply to end of DATA command)
Is there some way to...
Find accounts that are configured to forward to gmail?
Disable forwarding in accounts that are configured to forward to gmail?
On a new server we have running CPanel, we have manually created a user account and when i try and log into mydomain.com/whm with that username/password it doesn't let me.
Now my second thought is that I should be logging into mydomain.com/cpanel rather than mydomain.com/whm but I get a 404 for /cpanel.
If i'm logged in as root, i cannot transfer into the user account cpanel either...
in order to secure my server against instrusion, i disabled ssh root login and created a user for myself. however in order to access the user i need to enable SSH Password authentication
I dont enable password authentication all the time and i keep it disabled unless i need to do something via ssh.
Now my question will be, is there a way to keep the user i created and keep the root login disabled and password authentication disabled but use ssh keys for the user i created?
I was informed that if i opt to login to ssh via the user i created, the only way to do that is to enable password authentication as it cannot work with ssh keys. is this true?
I really hope someone can help me how to use the user i created together with ssh keys so i dont have to enable password authentication when loggin to ssh
I have a VPS and about 140 accounts on it. I've also got cPanel and WHM installed. I'm moving to a new host, but the thought of having to move all these accounts manually really makes me lazy I have to go into each account and go to backup -> backup to remote FTP, and yeah..
Is there any way I can mass backup all of my accounts, or all accounts I select, to a specified FTP server?
I only have root access on my VPS, but not on the server I'm moving all the backups to..
We're using Google Apps to handle all e-mail for the domain, so we have no need for POP and IMAP services running on our server (and I'm always getting e-mails from LFD that show bots are trying to connect with random passwords and such) so I want to disable them, but keep SMTP active since some scripts running on our server use it and I don't feel like rewriting them right now. I unchecked IMAP and POP in the WHM service manager to disable them, but it's still enabled and I'm able to connect and everything. How can I completely disable these 2 services?
I just got a new vps running virtuozzo with cpanel/whm. I have no plans on ever using email on this server. What's the best way to turn all of it off from whm/cpanel and is it worth doing to speed up the server?
I've got a buddy who wants to host a website with some questionable content. Nothing on the website will be illegal but wants to remain completely anonymous.
Has anyone here ever used www.katzglobal.com, or can anyone recomend this grade of hosting?
about anonymous hosting/domain registration. I've been a web developer for a while and just started building a site for a friend of mine overseas. He wants everything to be completely anonymous due to the nature of the site (steroids).
Now I'm pretty sure I got it figured out but it seems too easy. Offshore domain registration with a prepaid card/ offshore web hosting the same way. My guy says he wants everything as anonymous as possible and is already hooked up to the Tor network with Privoxy.
A client of mine contacted me to do some changes in his website that's being hosted with Godaddy (it was not me who did the previous works, I'm trying first time a site hosted with Godaddy).
So I tried to enter the site thro' my SmartFTP, but the moment I hit enter after filling up the address, login and password, the login and password fields turn greyish, and the address gets changed to 'domain name - anonymous'.
I get a small remote browser like I get in case of other wesites, but I get something empty in this case. I don't see any files of the website present in that browser.
I am using plesk 11.0.9 and I want disable ssl anonymous authentication. A vulnerability exists in SSL communications when clients are allowed to connect using no authentication algorithm.
each time i migrate a Domain from a plesk 9.5.5 Windows Hosting Server towards the new plesk 11.5 Server the customers iusr Password does not match the Systems iusr Password.so after each Migration the Website is requesting a username and Password.
1. how to solve that for the whole Installation?
2. at plesk 7.5 and later there was a Workaround which is not anymore supported: websrvmng.exe –update-anon-password –domain-name=yourdomain.com
Code: [root@serwer /]# /scripts/updatenow !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! Running updatenow manually may cause /scripts to become out of sync with the cPanel installation. This can cause a variety of problems. !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
Code: [root@serwer /]# /scripts/initquotas Warning virtual file systems are mounted. Quota's may be counted as double for users who are currently logged in. Please have jailshell users logout before running quotacheck in the future! All jailed users will be logged out in 60 seconds! Broadcast message from root (Tue Jul 17 19:47:41 2007): Warning! The system is about to perform quota maintenance. All users will be logged out in 60 seconds. PLEASE Do not log back in for 30 minutes, or you may inadvertantly disable your account. jailshell: no process killed Quotas are now on
Code: [root@serwer /]# /scripts/fixquotas Installing Default Quota Databases......Done Warning virtual file systems are mounted. Quota's may be counted as double for users who are currently logged in. Please have jailshell users logout before running quotacheck in the future! All jailed users will be logged out in 60 seconds! Broadcast message from root (Tue Jul 17 19:49:17 2007): Warning! The system is about to perform quota maintenance. All users will be logged out in 60 seconds. PLEASE Do not log back in for 30 minutes, or you may inadvertantly disable your account. No filesystems with quota detected. Resetting quota for adamkaro to 1024 M No filesystems with quota detected. Resetting quota for adammore to 1024 M No filesystems with quota detected. Resetting quota for adamna to 1536 M No filesystems with quota detected. Resetting quota for adasmp3 to 1024 M
i have a dedicated server. Centos 5.3 /Cpanel 2 reseller accounts on it: acc1 and acc2. acc1 has ns1.domain.tld and ns2.domain.tl nameservers set up acc2 has ns3.domain.tld and ns4.domain.tl nameservers set up
now i want to move an account (customer.tld) from acc2 to acc1 without downtime. how can i do this provided i can not have customer.tld both on acc1 and acc2 on the same server?
here's what i did:
1. changed customer.tld nameservers to have ns1.domain.tld, ns2.domain.tld, ns3.domain.tld, ns4.domain.tld then waited for 48 hours for the changes to propagate
2. changed the customer.tld owner in WHM from acc2 to acc1
3. changed the cpanel package from acc2_package ti acc1_package
4. changed the IP in WHM for the account from ns3 IP to ns1 IP
5. changed the DNS entries in WHM ns3 changed to ns1 on all instances found there
but i still have a downtime period now. everything looks fine in httpd.conf thou