Commit Graph

273 Commits

Author SHA1 Message Date
Daniel Winzen
dda49153b3 Buffer access log writes to reduce IO 2018-05-13 09:04:12 +02:00
Daniel Winzen
1a9ee646c6 Adapt firewall rule to new ftp ports 2018-05-06 09:57:24 +02:00
Daniel Winzen
c6498ea1dc Increase available ports for passive ftp 2018-05-05 14:10:01 +02:00
Daniel Winzen
49a5b187b0 Increase buffer to get rid of errors on large response headers (e.g. cookies)
upstream sent too big header while reading response header
2018-04-22 15:07:00 +02:00
Daniel Winzen
300cd647df Increase limits and add putenv to disabled functions (vulerability)
Potential security vulnerability:
<?php
putenv("LD_PRELOAD=/home/site.onion/libtest.so");
mail("test@localhost","hacked","you");
2018-04-22 09:11:43 +02:00
Daniel Winzen
c9487adb1a MariaDB hit open_files_limit -> increase it 2018-03-12 06:47:18 +01:00
Daniel Winzen
e6ac79457f We have proper firewalling, fsockopen no longer needs to be disabled 2018-03-11 20:26:19 +01:00
Daniel Winzen
b2fab1ec53 Fix /var/run/nginx not being created on nginx start 2018-03-11 20:17:14 +01:00
Daniel Winzen
7bd2e79f06 Separate nginx sockets for each site to make hoster identification harder 2018-03-08 20:57:42 +01:00
Daniel Winzen
9eb5c2ae3c Show error message on login when account has not yet been created 2018-03-03 19:22:57 +01:00
Daniel Winzen
47b9b6e3a6 Fixed db query 2018-02-26 16:37:35 +01:00
Daniel Winzen
e8f8f42a24 Fix db query 2018-02-25 21:53:00 +01:00
Daniel Winzen
463be89b09 bumped database layout version 2018-02-25 21:47:29 +01:00
Daniel Winzen
6b0759be73 Added admin panel + optional manual approval for new sites 2018-02-25 21:25:05 +01:00
Daniel Winzen
eca0c675cd Added missing dovecot config to use home maildir 2018-02-11 19:53:10 +01:00
Daniel Winzen
ea112b3389 Added missing authorized destinations for services also reachable via .onion 2018-02-11 17:36:50 +01:00
Daniel Winzen
5163c7aa2b Connect to unix socket for default site 2018-02-11 17:22:31 +01:00
Daniel Winzen
ee191ccbb8 PHP7.2 no longer has the mcrypt module as a package 2018-02-11 15:46:52 +01:00
Daniel Winzen
fa24bb61ec Added PHP 7.2 support + minor bugfixes and performance tweaks
Note when applying this update you will have to update existing nginx vhosts to match new listening addresses (IPv6). Preferably you should update them to unix socket though and apply the changes to the tor hidden service config as well
2018-02-10 22:10:07 +01:00
Daniel Winzen
c65055a9bb Set mysql host to % instead of localhost to allow connections to 127.0.0.1
Note, for updating an existing database, you should run the following:
UPDATE mysql.user SET host='%'; FLUSH PRIVILEGES;
2017-12-21 20:26:24 +01:00
Daniel Winzen
779c7bdaea Mentioned https://deb.sury.org/ debian php packaging 2017-12-07 18:05:24 +01:00
Daniel Winzen
a9fd1b658c Use X-Accel-Redirect in log.php output 2017-12-03 12:48:37 +01:00
Daniel Winzen
99ccbdccfe Updated tutorial for Ubuntu 16.04 LTS compatibility 2017-11-05 10:43:44 +01:00
Daniel Winzen
e8dd2b864e Sort disable_functions and added a few system info revealing posix_* functions 2017-09-03 18:25:13 +02:00
Daniel Winzen
20754f052f Update frontpage and FAQ texts 2017-09-03 14:15:55 +02:00
Daniel Winzen
6384f4929a Added text editor to FileManager 2017-09-03 11:09:07 +02:00
Daniel Winzen
8801d3ae0c Increase PHP memory limit to 256M 2017-09-02 08:49:36 +02:00
Daniel Winzen
e34ad9efd7 Allow browser caching of common ressources (js, css img, vid and audio) 2017-08-26 14:49:03 +02:00
Daniel Winzen
6c6b6a689d Protect from zip-bombs 2017-08-07 21:15:13 +02:00
Daniel Winzen
06dce903dc cleanup tmp file 2017-08-07 21:05:58 +02:00
Daniel Winzen
5244f89340 Make file upload multiupload 2017-08-06 17:10:19 +02:00
Daniel Winzen
f549f6ddfb Added web based FileManager 2017-08-06 15:35:47 +02:00
Daniel Winzen
2a95dfc748 Show hidden files in FTP 2017-08-06 13:19:51 +02:00
Daniel Winzen
2cda288913 Increase upload limits 2017-08-06 10:57:56 +02:00
Daniel Winzen
df22041c09 Added anonymail.tech rewrite rule 2017-08-03 17:47:27 +02:00
Daniel Winzen
c85e5a9100 Added vfemail.net rewrite rule 2017-08-01 20:34:37 +02:00
Daniel Winzen
d33b216a4f Added secmail.pro rewrite rule 2017-08-01 20:20:07 +02:00
Daniel Winzen
5c75d1b8b7 Added elude mail rewrite rule 2017-08-01 20:05:11 +02:00
Daniel Winzen
8ff1ad5606 Log full request line 2017-07-25 10:20:30 +02:00
Daniel Winzen
f162720cb6 Make log format compatible to combined format for analysis with tools 2017-07-23 14:27:38 +02:00
Daniel Winzen
10542504e2 Add more to FAQ 2017-07-23 13:26:08 +02:00
Daniel Winzen
94e17365be Added sysctl settings 2017-07-23 09:31:31 +02:00
Daniel Winzen
a328bbde2d Added another torbox phishing clone 2017-07-11 22:21:43 +02:00
Daniel Winzen
9fda236ad8 Add FAQ 2017-07-11 17:43:34 +02:00
Daniel Winzen
8c1ccf4af5 Use less echo 2017-07-11 17:18:35 +02:00
Daniel Winzen
68879a34a5 Enable saslauthd 2017-06-25 17:49:14 +02:00
Daniel Winzen
2d1be203aa Setup squirrelmail data store 2017-06-25 16:07:36 +02:00
Daniel Winzen
f8ef29ea2d Easily switch between clearnet and non-clearnet postfix config 2017-06-24 14:46:30 +02:00
Daniel Winzen
94ef1125e2 Remove deprecated option 2017-06-24 13:17:57 +02:00
Daniel Winzen
94f0ae9cc6 Fix captcha on login page 2017-06-17 14:37:01 +02:00