[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y ] [Home]
4chanarchives logo
XAMPP for real world use
Images are sometimes not shown due to bandwidth/network limitations. Refreshing the page usually helps.

You are currently reading a thread in /g/ - Technology

Thread replies: 6
Thread images: 1
File: url.png (2 KB, 112x113) Image search: [Google]
url.png
2 KB, 112x113
So I have a spare Windows machine. There is a website I host, it's nothing big, but the data on it is important, and contains sensitive information.

Only usernames/passwords, but still, it's something I don't want to get stolen. (Of course they can just exploit the php application.)

So.
How realistic is it, to have it running in XAMPP?
I know I can update the XAMPP installation pretty easily.

But is it stable? Most importantly, is it secure?
>>
>>54459868
For example, see this:
https://stackoverflow.com/a/26298611/199290

> XAMPP is pretty insecure.
But how or why?
If I clear out the htdocs folder, copy my stuff inside, and only allow localhost mysql connections - how is it less secure than a new MariaDB/MySQL + Apache win32 installation?
>>
>>54459868
>>54459904
Should have asked in a /sqt/ thread instead of creating your own.
Still, you don't need xampp. Just install Apache + php + mysql if you need it.
>>
>>54460098
Yeah but that's what I am trying to figure out, like what's exactly is the difference between having compatible versions together + a control panel + everything set up VS. installing them and setting them up one by one, and maybe they don't even mix?

Even the Apache binaries for win looks fucking old and shady.
>>
>>54460128
Because the GUI increases the attack surface.
But really OP, you're just gonna be buttraped if you're running a windows server.
>>
>>54460210
> Because the GUI increases the attack surface.
Well, let's say I forward out the RDP port, in the open. Then I run "EvlWatcher", so I block out bruteforcers. I doubt anyone could ever get in in 20 years.

But, the RDP is not even open. You could also set up an openVPN connection and allow RDP over there.

> if you're running a windows server
How so?
You have your services open to the world - like Apache. Maybe an FTP server or something, but that's it.

Exploits are the same on Linux/Windows IMO, most of the times attackers use local exploits.
Thread replies: 6
Thread images: 1

banner
banner
[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y] [Home]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
If a post contains personal/copyrighted/illegal content you can contact me at [email protected] with that post and thread number and it will be removed as soon as possible.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com, send takedown notices to them.
This is a 4chan archive - all of the content originated from them. If you need IP information for a Poster - you need to contact them. This website shows only archived content.