Using A VPS To Give Off Shells
Apr 11, 2008I am trying to make a free shell service, and i was wondering if it was possible using a FreeBSD VPS, with CPanel, and additional IPs. Or would a dedicated server be required to do that?
View 11 RepliesI am trying to make a free shell service, and i was wondering if it was possible using a FreeBSD VPS, with CPanel, and additional IPs. Or would a dedicated server be required to do that?
View 11 RepliesDoes anyone have a recommendation for a company from which I can rent limited Windows accounts?
I have some clients who need 50-100 different Windows accounts for a project they're working on; Renting a dedicated server for each one is a bit much, but Terminal Services would be fine.
I've been concerned about executing commands through (./) using php and perl shells on the server
a new way of hacking these days is using perl shells , even if the perl was terminated on the server ,, or was forbidden for users
hackers upload a (perl) program to the server to use it instead of the server's own perl
any way ,,
chmoding the (ls-cat-more-less) to 4750 seems to give permission denied when exeuting these programs on the server
but the hackers also found that they could upload their own ls-cat-more-less programs and use them instead of the server's
they also could rename them ls==>ki or anything and use them like this
./ki /etc/valiases -alXrt
and the commands work like charm for them
./ <<--- this command uses the sh program on the server ,, ((sh which refers to bash on most servers))
so
./ki
is the same as
sh ki
and
bash ki
so i tried chmoding sh with 4750 and that killed the exploit
i was concerned about cpanel's and the website's functionality
so i tried changing an accounts password and creating a database ,, they both worked fine
so ,, if u thing chmoding 4750 sh is a bad idea please let me know
and if you know any other ways of disabling all the perl scripts on the server
for save my server from perl shells , many hakers can haked by cgi-telnet & r57 shell with perl how can save perl without stop it because if i stop it cpanels was disabled any one have any way to save my server from shell perl?
View 11 Replies View Relatedwhat programmes should be installed in a dedicated server that will be used for irc hosting (shells etc) and will run FreeBSD OS?
some i have thought:
APF
identd
named
tcl
ftp
apache
Currently looking for a UK based VPS provider that allows IRC. 256-512mB of RAM, only about 5gB of HDD space required, maybe 10gB. Being at UK Solutions is a big plus, but not a requirement. Will be hosting IRC shell accounts for BNCs, Eggdrops and various IRC clients.
At least 10 IPs would also be a plus. Not certain on budget yet.
i need a company that offers all of these services.
uk or us not fussed really.
shared -
reseller -
ftp -
ircd -
shells -
eggdrop -
bnc -
shoutcast -
i have bittraffic so far. but dont really wanna use them ...
I can see that almost all the web hosting companies have been overselling. Can anyone give some suggestion.Tell me a couple of non overseller.
View 14 Replies View RelatedI've sent in for my refund over 7 days ago and still nothing. I've also got a ticket here which hasn't been replied to within 72hours. Pc-Core just give me my refund all I want is my money. I'm sorry you might be busy or something but just give me my money.
I've been waiting forever you should just give me my money!
I got a dedicated server running, which is administered by DirectAdmin, which I mainly use as a mysql server. Now my question would be, what would I do to give all resources possible to mySQL? I mean I don´t wanna take down directadmin and setup mySQL only, so I want to keep directadmin but give almost all server resources to mySQL?
What I did so far is adjust all tables, do indexes and stuff.
The background is that at certain times I face server loads of 40 caused by many external servers of mine querying the mySQL database on the server I am talking about.
So while the load is mainly below 0.1 it sometimes goes up to 40. So this peak I wanna slow down a little bit by giving all resources to mySQL. To say that beforehand splitting the queries from external servers is not an option - they all need to be done at the same time.
So I would really be interested and thankful in what you would advice to do to optimize the mySQL service?
BTW system is running on debian.
Speaking from personal experience only, who are the good, helpful hosts, who can give a reseller account, with servers physically located in the UK, giving 20Gb Bandwidth and 1Gb Disk space, has excellent email support (in English!!!!!) within 20 minutes of sending the email, full access to Cpanel including access to HTAccess, all for less than 20 pounds a month.
View 9 Replies View RelatedMy quetsion is just the title,i have not build a website by myself,and i have not enough money to do it.
Now i want to creat a site,so could you tell me which site have free host,and it support php and sql.
The'v changed their homepage design and this time I personally think that the old design was a bit better than the new one,This one might work In terms of performance but I personally think that the new design might not work out pretty well.
View 14 Replies View RelatedMy dedi host, was having all sorts of problems with simply just setting up a box, taking them roughly a week, and I'm still waiting for a resolution.
Anyhow,
Windows validation failed, I contacted them to open up a ticket, They wanted the password to root because I've changed the default password they gave me, so I gave them the password
(1)Should I not be doing this, or do you have to give them the password when they ask.
(2)Can this have been resolved without giving them password to root.
They said it'd be resolved in an hour, I emailed them back and they said they'll email me when it's done. But they've closed off the ticket.
(3)Issue hasn't been resolved, how's anyone going to be working on it if the ticket is closed? Shouldn't that ticket be left open till the issue is resolved?
Wow I'm so green behind the ears with all this stuff.
I've been with JaguarPc since 1999 and I just realized that through all my years here I never gave them a shout out. These guys are very helpful and it's amazing the type of service they offer for the money. I have 2 virtual private servers with them and absolutely no issues. They manage the entire server for me for $33.95 a month. So if anybody needs good hosting:
[url]
I know nothing of server management, nothing about how to manage my VPS Can't even install a simple software and do not know how to secure my VPS on the other hand I am so busy I can't learn at least for a few months have trouble
Should I go back to share hosting?
I've got an older "Super Server P4" series server @ ThePlanet - it's been a great box for years. We recently upgraded php4 to php5 and did a mysql upgrade as well. Ever since, randomly, without warning, Apache stops terminating connections, so the max connections fills up, and httpd won't respond. Apache doesn't stop running, it just max's out and stops accepting new connections, so customers assume the server is "down", although email/FTP work fine.
The server never crashes, the loads stay down, but httpd just fills up and won't accept more connections. We can't increase max connections (we actually DECRESED IT), because they'll just keep piling up, never terminating, and then ultimately, it will crash the box.
My admin has worked for nearly 2 weeks trying to figure it out, and Scott (AtomicRocketTurtle) and his team have been evaluating it for about a week - it's happened 3x in 2 days ... last night, httpd quit responding for about 7+ hours and since we didn't have httpd monitoring, we never knew until the office opened this AM and I had two very angry customers. Scott suspects it may be some rogue application that triggers it that didn't affect it prior to the php5/mysql upgrades.
Both Scott and Parm, my admin, have about thrown in the towel and are recommending we retire the server and migrate to a new box.
It's older - much older .. I'm pasting specs below, RHEL3, Plesk 7.5 .. but just wonder, before retiring an old server that was RUNNING GREAT prior to the upgrade, maybe someone has seen this happen before?
If so - PLEASE LET US KNOW before I spend the $$$ on a new box.
Current box's specs:
CPU GenuineIntel, Intel(R) Pentium(R) 4 CPU 2.80GHz
Version psa v7.5.4_build75060118.18 os_RedHat el3
OS Linux 2.4.21-47.0.1.ELsmp
RAM: 1GB, with 2GB swap
apache 1.3.31
bind 9.2.4-20.EL3
coldfusion Component was not installed
coldfusion-support 7.3-2.96.128
courier-imap 3.0.8-rhel3.build75050824.12
drweb 4.32.2-rh7_psa
drweb-qmail 4.32-rhel3.build75050824.12
frontpage 5.0.2.2634
httpd 2.0.46-61.ent
jdk 1.4.2
logrotate 3.7
mailman 2.1.5.1-25.rhel3.7
mod_perl 1.99_09-10.ent
mod_python 3.0.3-5.ent
mysql 4.1.21-2.rhel3.art
perl-Apache-ASP 2.57-rhel3.build75050824.12
php 5.0.4-13.rhel3.art
phpmyadmin 2.5.3
phppgadmin 2.4.2
postgresql 7.3.6-7
postgresql-server 7.3.18-1
proftpd 1.2.9
psa 7.5.4-rhel3.build75050824.12
psa-agent 1.3.2-2_psa7.1
psa-api-rpc 7.5.4-rhel3.build75050930.11
psa-bu 7.5.4-rhel3.build75050926.17
psa-horde 3.0.5-rhel3.build75050824.12
psa-imp 4.0.3-rhel3.build75050824.12
psa-logrotate 3.7-rhel3.build75050824.12
psa-manual-custom-skin-guide 7.5.4-rhel3.build75050824.12
psa-migration-manager 7.5.4-rhel3.build75050930.11
psa-proftpd 1.2.10-rhel3.build75050824.12
psa-qmail 1.03-rhel3.build75050824.12
psa-qmail-rblsmtpd 0.70-rhel3.build75050824.12
psa-spamassassin Component was not installed
psa-tomcat-configurator 7.5.4-rhel3.build75050824.12
psa-turba 2.0.3-rhel3.build75050926.17
qmail 1.03
rblsmtpd 0.70
samba 3.0.9-1.3E.12
spamassassin 3.1.3-1
SSHTerm 0.2.2-rhel3.build75050824.12
stunnel 4.04-4
tomcat 4.1.24-full.2jpp
webalizer 2.01_10-15.ent
do any vps providers give over 100gig of space and 20mbs
View 6 Replies View Relatedif i can lock a file from being downloaded or viewed in ftp editor even if i give some one ftp access?
View 3 Replies View RelatedI have taken over management of a bunch of a dedicated servers and have a question.
What are the commands on Linux (RedHat, RHL) for giving a User access rights to a directory(ies) only.
So that this user can FTP and Telnet to the server but will be able to:
1- only upload files to these directory(ies)
2- only delete files/dirs from these directory(ies)
3- only execute programs residing in these directory(ies)
What you guys think about liquidweb hosting?
how fast the speed is? i have doubt because when i visit their main page are slow but i read some feedback its good
I'd like to give my username on my server permission to access g++ to compile custom C++ programs. I know I can just su - and compile as root, but I really don't like that.
What do I need to do to allow ONLY my username permission to do that?
I have WHM and Cpanel on my dedicated server. Is there a way to give them access to change this? I dont want then to have access to everything either.
Edit your httpd.conf file.
Timeout 50
KeepAlive On
MaxKeepAliveRequests 120
KeepAliveTimeout 10
MinSpareServers 10
MaxSpareServers 20
StartServers 16
MaxClients 125
MaxRequestsPerChild 5000Â
I have the same error mentioned in this old tread:
[url]
Once in a while the user have "Internal server error"
when accessing any php page.
The php is php v4 compile as fastcgi on Centos 5.
The warning/error sequins is always like this:
[Fri Apr 17 09:09:49 2009] [warn] FastCGI: (dynamic) server "/home/fastcgi-scripts/abc.fcgi" (pid 22726) termination signaled
[Fri Apr 17 09:09:49 2009] [warn] FastCGI: (dynamic) server "/home/fastcgi-scripts/abc.fcgi" (pid 22726) terminated by calling exit with status '0'
[Fri Apr 17 09:09:49 2009] [error] [client 127.0.0.1] FastCGI: incomplete headers (0 bytes) received from server "/home/fastcgi-scripts/abc.fcgi", referer:
[url]
I am just curious, I know that it is a great customer retention hook, but really, and how about unlimited bandwidth? This is my first post on the forum, and I will be asking many more questions as I want to get the inside scoop before I take the reseller plunge.
At first glance it seems as though the advertising is throughout the site and not just in the advertisement section. I know it's only $7.95, but for life? I guess if they're paying for 2 years at a time, but month to month there is no way. They would end up with a ton of registered domains, and allot of parked domains. Oh well just thought I would ask.
I have an account on godaddy, with more than 20 domains registered and well, so far i have been in charge of the updates of these domains and the websites they represent. But now I have this customer who is asking me to have access to his specific domain so he can upload files by him self, the thing is that i dont have a clue of how to do it. I tried to create a new account in godaddy for this customer and tried to transfer this domain into his account and I was not allowed to. I cannot give him my username and psw cause he wont only have access to his website but all those i have registered under my account. I will really appreciate some advises to help me work this out.
View 4 Replies View RelatedI want to transfer hosts right now but I still have 9 months with my old host. Do you know of any hosts that will transfer this time when I move to them? I have seen this on a few sites but forgot where
View 14 Replies View RelatedI have a software program on my home PC that writes to files on my remote VPS every few minutes.
The only way I can accomplish this is to CHMOD the files to 777 and give the whole world write priveledges.
Is there a way I can give my external (home) IP address write priveledges to certain files on my VPS without CHMODing them as 777?
I run the latest version of cPanel and WHM on my VPS.
1 have to create a new user, for example "webmaster" with ftp access, plesk access and database access.
My problem is: after i make all, this user can see all database for this domain. Can i show him only 1 database (him database)? If yes, how i can do?
My reseller have got one plan, where option "Gestion de l'accès au serveur via SSH" (Manage SSH access to server) is on "Peut autoriser l'accès uniquement à un environnement chrooté" (Can autorize access only in chrooted environment).
This plan contains only one subscription in which I would like to permit users to use sftp. If I go in the subscription, and then I click on "Customize subscription", I can see option "Gestion de l'accès au serveur via SSH" (Manage SSH access to server) is on "Peut autoriser l'accès uniquement à un environnement chrooté" (Can autorize access only in chrooted environment)...
=> So same than in the plan.
After that, when I click on subscription => WebSites and Domain => One domain => FTP Access and I choose a ftp user, I don't have any option to allow ssh access to the user.
I'm using Plesk Panel 12 on Debian GNU/Linux 7.6 server. I created a ftp user in a subdomain (sub.domain.tld) of my domain (domain.tld).
In Tools and settings = Policy security, I allowed sftp and ftp connections. When I try to connect I get this message :
Code:
sftp my_user@domain.tld
Connection closed
In the password file I got :
Code:
my_user:x:10000:1003::/var/www/vhosts/domain.tld/sub.mydomain.tld/httpdocs:/bin/false