View Single Post
  #1 (permalink)  
Old 02-12-2008, 22:00
vladimir vladimir is offline
Junior Member
 
Join Date: Dec 2008
Posts: 12
Default Paranoid security

Hi,

I've been using Eukhost services for more than a year and I'm generally satisfied with the level of service and especially technical support.

However, in the past week I've wasted more than four hours hunting for obscure glitches in my scripts only to find that they were caused by security settings on the hosting servers.

The first case was a problem with mod_security and it was resolved quickly once I contacted tech support. However, I had spent two hours trying to identify the problem before asking for help (because in most cases the problem is my stupidity) and only after I eliminated everything else did I contact technical support.

The other problem which isn't solved yet is with the suhosin Extension (hardened PHP) which limits the number of elements in the _FILES superglobal to 25. It took me two hours to figure this out and I expect this will also be solved shortly.

I'm sure you guys realize that time is money and four hours of hunting for weird glitches is four hours I can't bill my clients for... so I would recommend and appreciate that you think a bit more thoroughly about potential problems before you decide to implement new security measures. I've been a web developer for 8 years and I've used a lot of hosting solutions and this is the first time I've encountered mod_security and suhosin.
Reply With Quote