Results 1 to 5 of 5
  1. #1
    Join Date
    Mar 2007
    Posts
    56
    Plugin Contributions
    0

    Default Securing Zencart

    The security guidelines suggest that the best way to secure Zencart is to store certain folders below the webroot.

    I tried to do this and also change the admin/includes/configure.php file to reflect the right paths but ended up with some errors.

    When i tried to reverse the process, i could not log into admin

    My question is simply
    - Which are the folders that should be put below the webroot? is that images, media and what else?

    - Which files need to be updated to show thE path of the new folders? Is that admin/includes/configure.php only or also includes/configure.php too. And when this is done, which other file should be updated?

    - Also, if the images folder is below the web root, does it present any problems for the admin area in being able to upload and manage images? Since the logic is that the folder is not accessble through the web root. How much might tranfered files affect teh admin area?

  2. #2
    Join Date
    Feb 2007
    Posts
    1,704
    Plugin Contributions
    0

    Default Re: Securing Zencart

    i need to know this also

  3. #3

    Default Re: Securing Zencart

    Quote Originally Posted by kitcorsa View Post
    i need to know this also

    https://www.zen-cart.com/tutorials/i...hp?article=280

  4. #4
    Join Date
    Nov 2006
    Location
    Papworth, Cambridgeshire, UK
    Posts
    731
    Plugin Contributions
    3

    Default Re: Securing Zencart

    The security guidelines suggest that the best way to secure Zencart is to store certain folders below the webroot.
    What security guidelines are these?
    All of the Zen Cart folders are below the webroot by default. There is a recommendation that if you are selling downloadable products you should move the downloads folder and downloads outside the webroot, so they are not directly accessible from the website.

  5. #5
    Join Date
    Jul 2005
    Location
    Upstate NY
    Posts
    22,010
    Plugin Contributions
    25

    Default Re: Securing Zencart

    By "below the webroot" they mean outside /public_html/ in the directory path... it's just a semantic ambiguity. Trees don't have branches and leaves "below" the roots, they are "above" the roots. Anything "below" the roots is hidden underground.

 

 

Similar Threads

  1. Securing Zencart Installation
    By guzzer in forum Installing on a Linux/Unix Server
    Replies: 1
    Last Post: 20 May 2008, 10:35 AM
  2. Following instructions in "Securing your ZenCart Store" in WIKI
    By busyMom in forum Templates, Stylesheets, Page Layout
    Replies: 4
    Last Post: 7 Jul 2007, 07:33 PM
  3. Securing zencart help please
    By thomasjones2002 in forum Basic Configuration
    Replies: 3
    Last Post: 6 Jul 2007, 05:36 AM
  4. Securing TinyFCK in Zencart admin
    By zihao85 in forum Customization from the Admin
    Replies: 0
    Last Post: 1 Jul 2007, 10:52 AM
  5. Securing 1.2.7
    By acdir in forum General Questions
    Replies: 5
    Last Post: 2 Nov 2006, 10:43 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  
disjunctive-egg