Anonymous FTP Security Threat

Status
Not open for further replies.

TranceOperator

New Member
Messages
286
Reaction score
0
Points
0
Hello

Is there any way you all could disallow anonymous FTP login on the accounts?

I went into my CPanel and told it to disallow any anonymous ftp logins but then I went and tried it again in the command prompt and It still lets me in!:


C:\Documents and Settings\Owner>ftp elitenick.com
Connected to elitenick.com.
220-This computer system is for authorized users only. Individuals using thi
system without authority or in excess of their authority are subject to
having all their activities on this system monitored and recorded or
examined by any authorized person, including law enforcement, as system
personnel deem appropriate. In the course of monitoring individuals
improperly using the system or in the course of system maintenance, the
activities of authorized users may also be monitored and recorded. Any
material so recorded may be disclosed as appropriate. Anyone using this
system consents to these terms.


220 ProFTPD 1.2.10 Server (ProFTPD) [69.93.137.170]
User (elitenick.com:(none)): anonymous
331 Anonymous login ok, send your complete email address as your password.
Password:
230 Anonymous access granted, restrictions apply.
ftp>


I hate it because I was able to navigate all around my directories and into valuable spaces such as my forums includes folder, ect.

Is there a file I can edit to disable any anonymous login or what?

Thanks
 

n4tec

Active Member
Messages
3,312
Reaction score
0
Points
36
have you tried FTP Manager then go to Setup Anonymous FTP Access and then uncheck allow Anonymous users to access ftp.elitenick.com

:grin:
 
Last edited:

NewFuture

New Member
Messages
1,658
Reaction score
0
Points
0
did what you said it blocks anonymous users great!
 
Last edited:

n4tec

Active Member
Messages
3,312
Reaction score
0
Points
36
the truth is that i had to try it out before i posted and it worked.. if you want anonymous users to go to the incoming folder you can check the one below.. am not sure what the incoming folder is for but on my test server i have it too..

anonymous users by default use unlimited bandwidth you can also customize if you want.. But disabling them is fine and good..
 

TranceOperator

New Member
Messages
286
Reaction score
0
Points
0
Well elitenick.com is a subdomain I added on my site....and it gives me no option anywhere to disable anonymous ftp access to it...and as for my main domain tranceoperation.com, I can disable anonymous access to the incoming folder but only as the subdomain tranceop.x10hosting.com, not the real domain, and I can't disable it for all :blink:

It's weird..and annoying.

Screen shot:

wtf.gif
 
Last edited:

n4tec

Active Member
Messages
3,312
Reaction score
0
Points
36
Was allow anonymous ftp checked?

I had thought your main account domain was elitenick... Now save the settings and try.. i have two domains one parked and another as the main domain.. I tried with the main domain and parked one and anonymous ftp was diabled..

EDIT: do not check anonymous uploads for the incoming folder...
 
Last edited:

TranceOperator

New Member
Messages
286
Reaction score
0
Points
0
220 ProFTPD 1.2.10 Server (ProFTPD) [69.93.137.170]
User (tranceop.x10hosting.com:(none)): anonymous
331 Anonymous login ok, send your complete email address as your password.
Password:
230 Anonymous access granted, restrictions apply.
ftp>



I guess there's no way to stop it on my part.
 

n4tec

Active Member
Messages
3,312
Reaction score
0
Points
36
there is probably away but am not sure how do it since you are using the x10 subdomain as main domain..

why not ask for elitenick to be the main domain? But you will have to config scripts on your account to point to elitenick.com..
 
Status
Not open for further replies.
Top