osCommerce and osCMax shopping cart software forums

Shopping Cart Software

osCommerce with teeth!

 

Admin Security (.htaccess and login page)

This is a discussion on Admin Security (.htaccess and login page) within the osCMax v1.7 Installation forums, part of the osCMax v1.7 Forums category; I have been reading everything I can find about securing my new MAX 1.7 install, and I'd like to verify ...


Go Back   osCommerce and osCMax shopping cart software forums > osCMax v1.7 Forums > osCMax v1.7 Installation

Register FAQ Members List Calendar Mark Forums Read


Free community membership! Fast easy FREE membership
Closed Thread

 

LinkBack Thread Tools
  #1  
Old 09-14-2004, 02:28 AM
ddecjc's Avatar
Member
 
Join Date: Sep 2004
Posts: 35
Thanks: 0
Thanked 0 Times in 0 Posts
Rep Power: 0
ddecjc
Default Admin Security (.htaccess and login page)

I have been reading everything I can find about securing my new MAX 1.7 install, and I'd like to verify something. Based on what I've read, it appears that the admin login feature is intended more as a way to give different users or groups different admin privileges than an actual security system to keep unwanted people out of the admin section. For true security, I should still use .htaccess and move/rename the admin folder.

Am I right on this?

Thanks.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
  #2  
Old 09-14-2004, 10:24 AM
ddecjc's Avatar
Member
 
Join Date: Sep 2004
Posts: 35
Thanks: 0
Thanked 0 Times in 0 Posts
Rep Power: 0
ddecjc
Default

Nobody has any words of wisdom on this one???
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
  #3  
Old 09-14-2004, 10:25 AM
michael_s's Avatar
osCMax Developer

 
Join Date: Jul 2002
Location: Phoenix, AZ
Posts: 10,331
Thanks: 68
Thanked 322 Times in 305 Posts
Rep Power: 10
michael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond repute
Default

The admin login is a good basic security measure. If you want extra security, you should also use .htaccess and move it to a different directory. It all depends on how much security you require...
__________________
Michael Sasek
osCMax Developer


  • osCMax Templates - Hundreds of premium quality templates. New designs every month!

  • xShop for osCMax - Windows Based osCMax administration. Improved workflow, security, speed and convenience.

  • osCMax Hosting - From basic hosting to High Availability, Load Balanced arrays, the most experienced osCMax host.

  • osCMax Template Tutorial - Learn how to make your own custom templates and how to use the powerful features of the osCMax template system.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
  #4  
Old 09-14-2004, 11:32 AM
ddecjc's Avatar
Member
 
Join Date: Sep 2004
Posts: 35
Thanks: 0
Thanked 0 Times in 0 Posts
Rep Power: 0
ddecjc
Default

Thanks for the feedback.

So, I should be able to infer that a fairly decent solution might be to use the admin login and move/rename the admin folder? Obviously nobody can guarantee anything for anyone, but it sounds like I could expect reasonable results from such an approach.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
  #5  
Old 09-14-2004, 08:31 PM
michael_s's Avatar
osCMax Developer

 
Join Date: Jul 2002
Location: Phoenix, AZ
Posts: 10,331
Thanks: 68
Thanked 322 Times in 305 Posts
Rep Power: 10
michael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond reputemichael_s has a reputation beyond repute
Default

Yep. It will provide reasonable security.
__________________
Michael Sasek
osCMax Developer


  • osCMax Templates - Hundreds of premium quality templates. New designs every month!

  • xShop for osCMax - Windows Based osCMax administration. Improved workflow, security, speed and convenience.

  • osCMax Hosting - From basic hosting to High Availability, Load Balanced arrays, the most experienced osCMax host.

  • osCMax Template Tutorial - Learn how to make your own custom templates and how to use the powerful features of the osCMax template system.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Closed Thread

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads

Thread Thread Starter Forum Replies Last Post
OSCMax 2.0 - Admin login page error kenlyle osCMax v2 Installation issues 0 08-18-2005 05:59 AM
Adding login page to admin HuGo osCommerce 2.2 Modification Help 3 07-02-2004 10:57 AM
where do i set the admin login page? Anonymous osCMax v1.7 Discussion 1 07-02-2004 12:12 AM
cannot access admin after adding .htaccess mega osCommerce 2.2 Modification Help 1 04-28-2004 07:36 AM
when u access admin login page nightsbird osCMax v1.7 Discussion 0 12-13-2003 11:53 AM


All times are GMT -8. The time now is 02:17 AM.


Powered by vBulletin®
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO
http://www.oscmax.com/forums/
Copyright 2008 osCMax