Showing posts with label whm issues. Show all posts
Showing posts with label whm issues. Show all posts

Thursday, September 30, 2010

Basic WHM preperation Notes



* Basic settings - check default theme, hostname, main shared ip, nameservers



* Resolver configurations - put in the appropriate nameserverips            



* Server Time - Change to America/New York and sync.                        



* Tweak Settings

- Mail

- Catchall account to fail- Silently Discard all FormMail-clone requests with a bcc: header in the subject line - enable

- The maximum each domain can send out per hour (0 is unlimited): 200 (0 for Dedicated servers)

- Attempt to prevent pop3 connection floods - enable

-BoxTrapper Spam Trap - disable

-Mailman - disable if on new servers (enabled for Dedicated servers)

-Neomail Webmail - disable     

-Spamassassin and spam box - enable

-Mysql - Use old style (4.0) passwords - enable  

-Notifications- Email users when they have their bandwidth. Disabling this will prevent all Bandwidth Limits -Email from being sent - enable

- Mail Box Usage Warnings - enable

- Disk Space Usage Warnings - enable

- Stats Programs

- Awstats Reverse Dns Resolution - enable

- Awstats Stats - enable

-Status- The load average that will cause the server status to appear red

-Allow cPanel users to install SSL Hosts if they have a dedicated ip.- disable

 -Allow cPanel users to reset their password via email - enable



* Update Config - auto, auto, auto



* Hostname - Check and add



* Security Centre

- PHP open_basedir Tweak - enable

- Shell Fork Bomb Protection - enable



* Exim configuration

- Reject mail at SMTP time if the sender host is in the zen.spamhaus.org, or bl.spamcop.net rbl - enable

- Use callouts to verify existence of email sender - disable

- Reject email at SMTP time for users who have exceeded their quota rather than keeping it in the queue - enable

- Verify the existence of email senders - disable





* FTP Configuration - Pure-ftpd and disable anonymous



* Install SSL for server and whm



* Service Manager - Exim on another port - enable 26 and save



* Themes - remove old themes from backend.



* cPanel - Plugins - modsecurity



* Download and configure Fantastico (if specified in Dedicated)



* IP - check and add.



* Configure Cluster and keep it disabled till post restore.

WHM-General Questions

 



1. Is there anyway to update a package without updating all the accounts in that package?



If you update an existing package, all the accounts that is under that specific package will reset with the new quotas you set. It is better to add another package and to upgrade the desired account(s) to the new package instead of updating the existing package.







2. Is there anyway to update, say, just the feature list of the package for all accounts without updating the quotas etc for all accounts?







 Yes, you can use the option Feature Manager in WHM and can edit the feature list.





3. Is there anyway to update per account the features an account is given. For example, if I want to give shell access to a client?





You can use the option "Modify an account" for change features per account. But, please be advised that shell access is not available on a shared server.





4. Also, I'd like to be able to manage quotas so I can allocate more than is being used. It's just much easier to manage this way. I used to be able to do that, but something changed along the way. Can I have it setup this way?



I am not sure which option you are referring to, however you can easily change the quota of any account by listing the account and just by clicking the quota of an account, that will direct you to the quota modification page Main --> Account Functions--> Quota Modification



Also, you can have a look at http://docs.cpanel.net/twiki/bin/view/AllDocumentation/WHMDocs/WebHome for complete WHM documentation.





5. I read in the documentation that there is a way to change the notifications for disk use and bandwidth use. Where can I change this?



I want to change when a notification is sent and I want to change the message.





Please be advised that the disk space/bandwidth usage notification settings are done at root level and it cannot be done by the user. What you have to do is to set a contact email on the control panel of the main account [as of now you set service@domain.com as contact email] and the disk quota/bandwidth/mail quota warnings will send to the cPanel contact email.



As of now, the server is tweaked to send the notifications at;



You can change the notification in the TWEAK setting in the WHM.





Monday, July 12, 2010

Steps for changing WHM to secure your Server


For more information and tutorial,visit this url ==>>http://docs.cpanel.net/twiki/bin/view/AllDocumentation/WHMDocs/WebHome

Goto Main ==>> ServerConfiguration =>> Tweak Settings in WHM

To make secure,change the settings as
1. Number (or all) of accounts to display per page in list accounts = 30
2. Disable : Allow users to park subdomains of the server’s hostname main domain
3. Disable : Allow users to Park/Addon Domains on top of domains owned by other users.
4. Disable : Allow users to Park/Addon Domains on top of domains owned by other users.
5. Disable : Allow resellers to create accounts with subdomains of the server’s hostname main domain
6. Disable : Allow Creation of Parked/Addon Domains that are not registered
7. Disable : When adding a new domain, automatically create A entries for the registered nameservers if they would be contained in the zone
8. Enable : Prevent users from parking/adding on common internet domain
9. Enable : Silently Discard all FormMail-clone requests with a bcc: header in the subject line
10. Fail: Default catch-all/default address behavior for new accounts. "fail" is usually the best choice if you are getting mail attacks.
11. disable:Track the origin of messages sent though the mail server by adding the X-Source headers (exim 4.34+ required)
12. The maximum each domain(mail limits) can send out per hour (0 is unlimited)-200 or 300
13. Disable: Prevent the user "nobody" from sending out mail to remote addresses (PHP and CGI scripts generally run as nobody if you are not using PHPSuexec and Suexec respectively.)Disable should enabled on server with phpsuexec.
14. Disable: Include a list of Pop before SMTP senders in the X-PopBeforeSMTP header when relaying mail. (exim 4.34-30+ required)
15. BoxTrapper Spam Trap
16. Disable : Add the mail. prefix for mailman urls
17. Enable:Horde Webmail
18: Enable: Mailman
19. RoundCube Webmail
20. SpamAssassin Spam Filter
21. SpamAssassin Spam Box delivery for messages marked as spam (user configurable)
22. SquirrelMail Webmail
23. Disable:Send passwords in plaintext over email when creating a new account
24. Disable:Awstats Reverse Dns Resolution
25. Disable:Analog
26. Disable:Allow users to update Awstats from cPanel
27. Enable: Notify the admin, (or the reseller), when an account has reached the "critical" Disk Usage state
28. Threshold percentage where a user's disk usage is considered to be in the "critical" state. (0 will disable this notification)-90
29. Number of days between processing log files and bandwidth usage = 1
30. Enable : Delete each domain’s access logs after stats run
31. The load average above the number of cpus at which logs file processing should be suspended = 10
32. Enable : Keep Stats Log between cPanel restarts
33. Disable : Allow Perl updates from RPM based linux vendors
34. Enable : Use jailshell as the default shell for all new accounts and modified accounts
35. Disable : Allow cPanel users to reset their password via email
36. Enable : Spamassasssin
37.Enable PHP open_basedir Protection. Tweak Security
38. Enable mod_userdir Protection.
39. Enable SMTP Tweak
40. Disable Compilers for unprivileged users.

Tags:-whm,whm configure,whm settings,whm to secure serve,server secre using whm,whm configuration,whm settings

Error deleting FTP account or not able to delete FTP account.






If you have deleted a FTP account and it’s still apearing on the CPanel–>>FTP Accounts, then follow the below steps :

==================================================================
root@server[#] cd /etc/vftp/

root@server[#] vi username

then just remove the entry from the file for the FTP account that you want to delete.

:wq!

===================================================================

Tags:-cpanel,webadmin help,linux,commands,ftp error,cpanel error,ftp cpanel,ftp

Set the server administrator email using .htaccess



For adding the server administrator email to your server(domain),just add the following line in .htaccess

root@new[#] vi .htaccess

SetEnv SERVER_ADMIN default@domain.com

save and Exit



Tags:-server admin,linux,.htaccess,cPanel,whm