1 |
On Mon, 12 Dec 2011 06:56:14 -0500 |
2 |
"Anthony G. Basile" wrote: |
3 |
|
4 |
> Do you have this documented anywhere. It would be a good addition to |
5 |
> any system wide hardening docs we already have. |
6 |
|
7 |
I'm afraid not, maybe sparsed among config file comments. I haven't |
8 |
created a blog yet or any papers if that's what you mean. I haven't |
9 |
really stopped for years. Hard to recall but I'll try to list them |
10 |
somewhere as they come to me now. Another good example is suhosin php |
11 |
command whitelisting which for small web-apps must avoid tons of |
12 |
exploits of course that ones obviously not pointless. |