Commit graph

74 commits

Author SHA1 Message Date
Daniel Winzen
943ca4b151
Enable fastcgi_cache 2018-05-15 20:45:49 +02:00
Daniel Winzen
dda49153b3
Buffer access log writes to reduce IO 2018-05-13 09:04:12 +02:00
Daniel Winzen
1a9ee646c6
Adapt firewall rule to new ftp ports 2018-05-06 09:57:24 +02:00
Daniel Winzen
c6498ea1dc
Increase available ports for passive ftp 2018-05-05 14:10:01 +02:00
Daniel Winzen
49a5b187b0
Increase buffer to get rid of errors on large response headers (e.g. cookies)
upstream sent too big header while reading response header
2018-04-22 15:07:00 +02:00
Daniel Winzen
300cd647df
Increase limits and add putenv to disabled functions (vulerability)
Potential security vulnerability:
<?php
putenv("LD_PRELOAD=/home/site.onion/libtest.so");
mail("test@localhost","hacked","you");
2018-04-22 09:11:43 +02:00
Daniel Winzen
c9487adb1a
MariaDB hit open_files_limit -> increase it 2018-03-12 06:47:18 +01:00
Daniel Winzen
e6ac79457f
We have proper firewalling, fsockopen no longer needs to be disabled 2018-03-11 20:26:19 +01:00
Daniel Winzen
b2fab1ec53
Fix /var/run/nginx not being created on nginx start 2018-03-11 20:17:14 +01:00
Daniel Winzen
7bd2e79f06
Separate nginx sockets for each site to make hoster identification harder 2018-03-08 20:57:42 +01:00
Daniel Winzen
9eb5c2ae3c
Show error message on login when account has not yet been created 2018-03-03 19:22:57 +01:00
Daniel Winzen
47b9b6e3a6
Fixed db query 2018-02-26 16:37:35 +01:00
Daniel Winzen
e8f8f42a24
Fix db query 2018-02-25 21:53:00 +01:00
Daniel Winzen
463be89b09
bumped database layout version 2018-02-25 21:47:29 +01:00
Daniel Winzen
6b0759be73
Added admin panel + optional manual approval for new sites 2018-02-25 21:25:05 +01:00
Daniel Winzen
eca0c675cd
Added missing dovecot config to use home maildir 2018-02-11 19:53:10 +01:00
Daniel Winzen
ea112b3389
Added missing authorized destinations for services also reachable via .onion 2018-02-11 17:36:50 +01:00
Daniel Winzen
5163c7aa2b
Connect to unix socket for default site 2018-02-11 17:22:31 +01:00
Daniel Winzen
ee191ccbb8
PHP7.2 no longer has the mcrypt module as a package 2018-02-11 15:46:52 +01:00
Daniel Winzen
fa24bb61ec
Added PHP 7.2 support + minor bugfixes and performance tweaks
Note when applying this update you will have to update existing nginx vhosts to match new listening addresses (IPv6). Preferably you should update them to unix socket though and apply the changes to the tor hidden service config as well
2018-02-10 22:10:07 +01:00
Daniel Winzen
c65055a9bb
Set mysql host to % instead of localhost to allow connections to 127.0.0.1
Note, for updating an existing database, you should run the following:
UPDATE mysql.user SET host='%'; FLUSH PRIVILEGES;
2017-12-21 20:26:24 +01:00
Daniel Winzen
779c7bdaea
Mentioned https://deb.sury.org/ debian php packaging 2017-12-07 18:05:24 +01:00
Daniel Winzen
a9fd1b658c
Use X-Accel-Redirect in log.php output 2017-12-03 12:48:37 +01:00
Daniel Winzen
99ccbdccfe
Updated tutorial for Ubuntu 16.04 LTS compatibility 2017-11-05 10:43:44 +01:00
Daniel Winzen
e8dd2b864e
Sort disable_functions and added a few system info revealing posix_* functions 2017-09-03 18:25:13 +02:00
Daniel Winzen
20754f052f
Update frontpage and FAQ texts 2017-09-03 14:15:55 +02:00
Daniel Winzen
6384f4929a
Added text editor to FileManager 2017-09-03 11:09:07 +02:00
Daniel Winzen
8801d3ae0c
Increase PHP memory limit to 256M 2017-09-02 08:49:36 +02:00
Daniel Winzen
e34ad9efd7
Allow browser caching of common ressources (js, css img, vid and audio) 2017-08-26 14:49:03 +02:00
Daniel Winzen
6c6b6a689d
Protect from zip-bombs 2017-08-07 21:15:13 +02:00
Daniel Winzen
06dce903dc
cleanup tmp file 2017-08-07 21:05:58 +02:00
Daniel Winzen
5244f89340
Make file upload multiupload 2017-08-06 17:10:19 +02:00
Daniel Winzen
f549f6ddfb
Added web based FileManager 2017-08-06 15:35:47 +02:00
Daniel Winzen
2a95dfc748
Show hidden files in FTP 2017-08-06 13:19:51 +02:00
Daniel Winzen
2cda288913
Increase upload limits 2017-08-06 10:57:56 +02:00
Daniel Winzen
df22041c09
Added anonymail.tech rewrite rule 2017-08-03 17:47:27 +02:00
Daniel Winzen
c85e5a9100
Added vfemail.net rewrite rule 2017-08-01 20:34:37 +02:00
Daniel Winzen
d33b216a4f
Added secmail.pro rewrite rule 2017-08-01 20:20:07 +02:00
Daniel Winzen
5c75d1b8b7 Added elude mail rewrite rule 2017-08-01 20:05:11 +02:00
Daniel Winzen
8ff1ad5606
Log full request line 2017-07-25 10:20:30 +02:00
Daniel Winzen
f162720cb6
Make log format compatible to combined format for analysis with tools 2017-07-23 14:27:38 +02:00
Daniel Winzen
10542504e2
Add more to FAQ 2017-07-23 13:26:08 +02:00
Daniel Winzen
94e17365be
Added sysctl settings 2017-07-23 09:31:31 +02:00
Daniel Winzen
a328bbde2d
Added another torbox phishing clone 2017-07-11 22:21:43 +02:00
Daniel Winzen
9fda236ad8
Add FAQ 2017-07-11 17:43:34 +02:00
Daniel Winzen
8c1ccf4af5
Use less echo 2017-07-11 17:18:35 +02:00
Daniel Winzen
68879a34a5
Enable saslauthd 2017-06-25 17:49:14 +02:00
Daniel Winzen
2d1be203aa
Setup squirrelmail data store 2017-06-25 16:07:36 +02:00
Daniel Winzen
f8ef29ea2d
Easily switch between clearnet and non-clearnet postfix config 2017-06-24 14:46:30 +02:00
Daniel Winzen
94ef1125e2
Remove deprecated option 2017-06-24 13:17:57 +02:00