Go Back   KnownHost Community Forum > General > The Lounge

The Lounge Place for open discussions

Reply
 
Thread Tools Display Modes
  #1  
Old 03-06-10, 11:52 PM
ftp ftp is offline
New Member
 
Join Date: 07,07
Posts: 4
Question Security of my VPS server...

A bit of a dumb question: - How do I know what programs need to be updated with security patches? (Outside of Apache, php, cpanel) -- whom I regularly check to see if new versions are available.
Reply With Quote
  #2  
Old 03-07-10, 08:32 PM
khiltd khiltd is offline
Senior Member
 
Join Date: 01,07
Posts: 417
Default

You pretty much either have to keep tabs on things like that yourself or pay someone else to do it for you. There's a fairly healthy number of security related blogs with RSS feeds out there.
Reply With Quote
  #3  
Old 03-09-10, 03:50 AM
ftp ftp is offline
New Member
 
Join Date: 07,07
Posts: 4
Default

Manually checking for updates is easy, but I don't know what types of programs require periodic updates. On another server I have elsewhere (I have a company that is paid to look after it for me) I seen imagemagick had to be updated -- if I hadn't gotten a copy of their audit log, I would have never known that program needed security patches. I'll re-phrase my question: How do I know what programs I should be checking on, for updates?
Reply With Quote
  #4  
Old 03-09-10, 03:01 PM
khiltd khiltd is offline
Senior Member
 
Join Date: 01,07
Posts: 417
Default

Quote:
Originally Posted by ftp View Post
Manually checking for updates is easy, but I don't know what types of programs require periodic updates. On another server I have elsewhere (I have a company that is paid to look after it for me) I seen imagemagick had to be updated -- if I hadn't gotten a copy of their audit log, I would have never known that program needed security patches. I'll re-phrase my question: How do I know what programs I should be checking on, for updates?
There's no program in the world that doesn't need updating to survive. It sounds like you want a substitute for experience, and I'm afraid there simply isn't one. If there were, then nobody would pay security consultants $500+/hr to do the things that they do.
Reply With Quote
  #5  
Old 03-10-10, 06:12 PM
ftp ftp is offline
New Member
 
Join Date: 07,07
Posts: 4
Default

True, I can understand where you'd see that from my post -- but considering Knownhost VPS' are managed, I need to let them know which programs to update; correct? I have to imagine the vast majority of us that host through managed providers aren't 'experienced' enough to know these programs on our own.

Also, I am not referring to software such as scripts: cpanel, oscommerce, wordpress, phpbb, etc.
I am referring to programs installed to the server that usually don't have any user-end interaction; such as kernels, the operating system, imageshack and the like.

The stuff that gets hacked and people are like 'I didn't even know that was ON my vps'

Last edited by ftp; 03-10-10 at 06:31 PM.
Reply With Quote
  #6  
Old 03-11-10, 04:47 AM
khiltd khiltd is offline
Senior Member
 
Join Date: 01,07
Posts: 417
Default

Quote:
Originally Posted by ftp View Post
True, I can understand where you'd see that from my post -- but considering Knownhost VPS' are managed, I need to let them know which programs to update; correct? I have to imagine the vast majority of us that host through managed providers aren't 'experienced' enough to know these programs on our own.

Also, I am not referring to software such as scripts: cpanel, oscommerce, wordpress, phpbb, etc.
I am referring to programs installed to the server that usually don't have any user-end interaction; such as kernels, the operating system, imageshack and the like.

The stuff that gets hacked and people are like 'I didn't even know that was ON my vps'
Imageshack is an image hosting service which is not installed on anybody's VPS.

The operating system and its kernel are beyond your control on a VPS account, and you should assume that KH employees will apply any genuinely critical patches as they come along.

Everything else is pretty much up to you, though support will certainly help you out if you ever get stuck installing anything.
Reply With Quote
  #7  
Old 03-11-10, 06:40 AM
ppc ppc is offline
Moderator
 
Join Date: 06,06
Location: East Coast
Posts: 730
Default

Try shooting an email off to support asking for advice.
__________________
Moderator (PM me if you need any assistance.)
A very happy cPanel VPS XLtx KnownHost customer
Reply With Quote
  #8  
Old 03-12-10, 03:39 PM
KH-Paul KH-Paul is offline
CTO
 
Join Date: 02,06
Posts: 1,367
Default

cPanel updates itself and the underlying OS on the daily basis unless update functionality was disabled at WHM >> Server Configuration >> Update Preferences.
Apahe, PHP and MySQL are not automatically upgraded as version change (even minor one) could cause problems with the applications you run on your system. All 3 can be easily upgraded through the web interface. If you need any assistance with such upgrades please feel free to create a ticket with our support team.
oscommerce, wordpress, phpbb, etc are 3rd party softwares. When it comes to 3rd party software the best we can do is to attempt to troubleshoot specific problems, etc. We can't really support 3rd party software and/or provide information about such application versions, upgrade paths, etc. It would be best to talk to the specific application support team/community to find more information about upgrades. In most cases there is an announcement list you can subscribe to in order to be notified when new version is being released.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



All times are GMT -4. The time now is 06:19 AM.


Powered by vBulletin® Version 3.8.3
Copyright ©2000 - 2010, Jelsoft Enterprises Ltd.