...
Modifying the permissions of this file is necessary and the easiest security method you can apply to your HostBill install.
Warning | ||
---|---|---|
| ||
Protect contents of includes/config.php file at all costs. During installation HostBill generates $ccEncryptionHash inside of it which is used as partial key for passwords encryption, if you'll loose/replace this variable's value, you will also loose all stored passwords. |
Securing Directories
...
In order for HostBill to operate in a safe environment, you need to prevent anonymous users from uploading content to your server. templates_c has folder permissions of 777, and users can upload files to the attachments folder through support tickets. You need to secure these folders to protect your server.
...