[SECURE] Setting up a FREE Webhost/Image Host/Forum Host/Blog Host

Hi everyone,
I'm trying to find out how to setup a SECURE free webhost, image host, blog host, forum host, etc....

How can someone setup a server extremely secure, so when people sign up for free hosting or a free image host or free forum on our website, we'd like to create, to make it EXTREMELY secure.

I know alot of people who have setup free hosts in the past, and got spammers who upload a spam script, attackers who setup a apache bench or stronger script, mean people who simply upload a trojan or back door or something script.

How and WHERE would one secure a free web host.

First off, I am curious what the FILE NAMES of are, that one should secure.

httpd.conf (I probably need a good set of mod _security settings)
php.ini ( I probably need a REALLY good list of disabled functions and restricted directories info)

Those are the two files I KNOW for fact should be locked up real tight, next question is what other files should be edited/setup/secured.

Then, is the part of actually securing the httpd.conf and php.ini and any other files you guys say need to be locked up. I have been reading many server security guides and stuff, I just want to get EXPERT opinions about every single thing to secure to make it so people who sign up for free hosting, are SERIOUSLY restricted to nothing damaging to any other files on the server, and cannot hack using our server.

I don't want to COMPLETELY disable MAIL() for the hosts, but I would like to LIMIT the number of emails being sent out to approximately 10 emails maximum sent out per day from EACH free host member (each subdomain or sub directory).

Many thanks in advance for hopefully helpful responses.

 

 

 

 

Top