Discussion
Loading...

#Tag

  • About
  • Code of conduct
  • Privacy
  • About Bonfire
Liam Dempsey
@liamdempsey@mstdn.social  ·  activity timestamp 5 days ago

TIL: If you have a #GravityForms on a #WordPress page, and that form has an image upload field, you may need to disable server caching on the page where that form is in order for the image upload feature to work correctly and consistently when uploading images directly from a phone.

  • Copy link
  • Flag this post
  • Block
#selfhosting
#selfhosting boosted
Jonathan Kamens 86 47
@jik@federate.social  ·  activity timestamp 6 days ago

If you are #selfHosting #WordPress and have access to the underlying filesystem, the best thing you can do to secure WP is change the permissions on your WP tree so it isn't writable by your web server user, except for the upload and temporary directories that WP needs to write into.
This prevents updates through the WP dashboard, so you need to regularly check for updates and loosen permissions while applying them.
I have a shell script for toggling permissions: https://gist.github.com/jikamens/9037496f01a4343578167a99a7ec78e6
#infosec

  • Copy link
  • Flag this post
  • Block
Jonathan Kamens 86 47
@jik@federate.social  ·  activity timestamp 6 days ago

If you are #selfHosting #WordPress and have access to the underlying filesystem, the best thing you can do to secure WP is change the permissions on your WP tree so it isn't writable by your web server user, except for the upload and temporary directories that WP needs to write into.
This prevents updates through the WP dashboard, so you need to regularly check for updates and loosen permissions while applying them.
I have a shell script for toggling permissions: https://gist.github.com/jikamens/9037496f01a4343578167a99a7ec78e6
#infosec

  • Copy link
  • Flag this post
  • Block
Log in

Encryptr.net Social

This is a forward thinking server running the Bonfire social media platform.

LGBTQA+ and BPOC friendly.

Encryptr.net Social: About · Code of conduct · Privacy ·
Encryptr.net social · 1.0.0-rc.3.6 no JS en
Automatic federation enabled
  • Explore
  • About
  • Code of Conduct
Home
Login