Please help me with CHMOD directories

Discussion regarding Joomla! security issues.

Moderator: General Support Moderators

Forum rules
Forum Rules
Absolute Beginner's Guide to Joomla! <-- please read before posting, this means YOU.
Security Checklist
Forum Post Assistant - If you are serious about wanting help, you will use this tool to help you post.
Locked
amy4snowsplash
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Fri Mar 12, 2010 11:44 am

Please help me with CHMOD directories

Post by amy4snowsplash » Tue May 11, 2010 5:28 pm

hi, i am not able to chmod 755 using ftp. It says command not understood.

it is a community website and at first i set the root to only readable and clicked inherit to all directories. then my users are not able to upload images.

Please can someone tell me which of the following directories have to be set to read only so that i can change permissions manually.

administrator
cache
components
images
includes
languages
libraries
logs
media
modules
plugins
templates
tmp
tpt
xmlrpc

please help me with what directories should be writable. i am in real trouble. many thanks!

User avatar
mandville
Joomla! Master
Joomla! Master
Posts: 15152
Joined: Mon Mar 20, 2006 1:56 am
Location: The Girly Side of Joomla in Sussex

Re: Please help me with CHMOD directories

Post by mandville » Tue May 11, 2010 5:42 pm

all folders should be 755, all files should be 644
what extensions are you using to let them upload?
HU2HY- Poor questions = Poor answer
Un requested Help PM's will be reported, added to the foe list and possibly just deleted
{VEL Team Leader}{TM Auditor }{ Showcase & Security forums Moderator}

htdev
Joomla! Apprentice
Joomla! Apprentice
Posts: 49
Joined: Mon Mar 26, 2007 9:14 pm

Re: Please help me with CHMOD directories

Post by htdev » Tue May 11, 2010 5:48 pm

755 doesn't always work. Even with the core Media Manager. I've seen where some use 757 for the images folder.

User avatar
PhilD
Joomla! Hero
Joomla! Hero
Posts: 2737
Joined: Sat Oct 21, 2006 10:20 pm
Location: Wisconsin USA
Contact:

Re: Please help me with CHMOD directories

Post by PhilD » Tue May 11, 2010 5:56 pm

You can Run the forum post assistant and security tool Instructions available here Post the results here so we can have a look at it. This should be able to give us an idea if your site can run 644/755 without issue. You should never make "other" have permissions of read, write, execute. to do so will invite site exploits in short order.

Suggested reading:
http://docs.joomla.org/How_do_UNIX_file ... ns_work%3F
http://docs.joomla.org/What_are_the_rec ... issions%3F
http://docs.joomla.org/Where_can_you_le ... issions%3F
http://docs.joomla.org/How_do_you_recur ... issions%3F
PhilD

amy4snowsplash
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Fri Mar 12, 2010 11:44 am

Re: Please help me with CHMOD directories

Post by amy4snowsplash » Tue May 11, 2010 6:15 pm

hi, just now I saw the system info directory permissions from the administrator end. I have a doubt with it.

If
administrator/templates/

is writable, then should the other folders in administrator should be readable and not writable?

please help me.

amy4snowsplash
Joomla! Apprentice
Joomla! Apprentice
Posts: 10
Joined: Fri Mar 12, 2010 11:44 am

Re: Please help me with CHMOD directories

Post by amy4snowsplash » Mon May 17, 2010 1:40 pm

hi, thank you so much everyone.
I successfully chmod-ed to 755 :D
thank you so much for your support!
Amy


Locked

Return to “Security - 1.0.x”