HTML Logo by World Wide Web Consortium (www.w3.org). Click to learn more about our commitment to accessibility and standards.

Moving forward with Composr

ocPortal has been relaunched as Composr CMS, which is now in beta. ocPortal 9 will be superseded by Composr 10.

Head over to compo.sr for our new site, and to our migration roadmap. Existing ocPortal member accounts have been mirrored.


Checks to complete before opening website.

Login / Search

 [ Join | More ]
 Add topic 
Posted
Rating:
#100595 (In Topic #19750)
Avatar

Fan in action

Hey guys,
             I'm getting ready to open my website to the public. Could you please post any suggestions that I should check so I can ensure my site is secure for launch?

Kind Regards,
Wal
Back to the top
 
Posted
Rating:
#100603
Avatar

Community saint

You could review your permissions in the permissions tree editor. And maybe do a float around around the site masquerading as some test users set up in different groups to see your permissions. There is one basic user "test" already included by default that wont be assigned to groups but you could create others with varying access just to make sure things play out the way you expect.

To masquerade just type the name of the user you want to view as in the little box bottom left corner of a page and press enter and you should see an &SU=test in the url of the pages you visit. At the bottom of the page there will be a link to switch back to admin.
Back to the top
 
Posted
Rating:
#100614
Avatar

Fan in action

hey duck, cheers for that. Yeh im going to go through every user group and make sure they cannot do something they are not supposed to be able to. Is there anything else I can do to increase security for the site? I have stopforumspam and honeypot set up, along with automatic banning.

Cheers
Back to the top
 
There are too many online users to list.
Control functions:

Quick reply   Contract

Your name:
Your message: