1. E

    In Progress CPANEL-43511 - Symlink Protection non helpful warnings

    Hello, I use cPanel 114.0.11 on Ubuntu. Following this article, Symlink Race Condition Protection | cPanel & WHM Documentation, I enabled the Bluehost patch. At the page of WHM "Security Advisor" the scan results show in red: " Important Add KernelCare’s Free Symlink Protection. This free...
  2. J

    The symlink race condition vulnerability

    I'm running Webhost manager on Ubuntu 20.4 (cpanel's supported version) but I only have the "BlueHost version" to patch this vulnerability. Cloudlinux has several methods, Is there a fix on the way from cPanel for this issue?
  3. 7

    KernelCare's Free Symlink Protection Removed After Update

    I recently updated my server kernal with yum update. I then Gracefully Rebooted the server. Now when I perform an Security Audit I receive the following error. "Kernel does not support the prevention of symlink ownership attacks. " I previously had KernalCare Free Symlink protection turned on...
  4. J

    SOLVED Suspicious symlink (->../../var/lib/mysql/mysql.sock)

    Error message received from csf. Trying to dig into this and some older articles reference cpanel but honestly, it's above my pay grade. Maybe someone can shed some light? Time: Wed Dec 30 14:06:02 2020 -0500 File: /tmp/mysql.sock Reason: Suspicious symlink...
  5. K

    Free SymLink Protection from KernelCare (Post 5,000 lol)

    Sorry guys I read endless threads about this and think I know the answer but I'm not sure. This is my first time trying to set this up. Summary of system: So running a GoDaddy VPS on CentOS 7.9 (3.10.0-1160.6.1.el7.x86_64) / EasyApache 4 / v90.0.17 uname -r = 3.10.0-1160.6.1.el7.x86_64...
  6. T

    Need advice on: symlink race condition vulnerability

    Hi, Yesterday I bought a VPS plan with cPanel in CentOS 7 64 bit. Today, I tried to apply the KernelCare patch to address the "symlink race condition vulnerability". This is advised by cPanel here: The problem is...
  7. J

    Access backups via FTP client?

    Hi /etc/redhat-release:CentOS Linux release 7.6.1810 (Core) /usr/local/cpanel/version: /var/cpanel/envtype:standard CPANEL=release I have a 2nd hard disk - /dev/sdb1 - that is mounted as /backup (/dev/sdb1 on /backup type ext4 (rw,relatime,data=ordered)) I have created one directory...
  8. E

    Website owner, very confused about Symlink Protection on Dedi

    Is this my fault as a website owner? Perhaps someone here can answer. I have no idea. I have been having problems with my website served on a dedicated managed server at Hostgator (to say the least). I got very annoyed when yesterday finally my website actually went down as something was...
  9. C

    [CPANEL-22562] User home directory created as symlink to whostmgr docroot

    I've been struggling with transfering accounts from one WHM account to the other, because mail folders are huge. In that process I've created and terminated some accounts multiple times. The last thing I was trying was to create a backup from cPanel, excluding mail/new mail/cur folders. All...
  10. PCZero

    Kernel does not support the prevention of symlink ownership attacks.

    Michael if you read this, the issue in SOLVED - Kernel does not support the prevention of symlink ownership attacks came back after I ran yum update tonight when being advised of a kernel update... Will I see this after EVERY yum update? How do I resolve it. Yes I ran Yum Update and have the...
  11. R

    Symlink gives 500 error

    I am a bit lost here. I've created a symlink to avoid having to have duplicate content for two very similar sites. ln -s /home/user/public_html/ /home/user/public_html/ The symlink is owned by the user. However whenever I try to access the
  12. N

    Apache Symlink Protection is enabled

    I am getting error via Security Advisor. Also enabled jailshell and EXPERIMENTAL: Jailshell Virtual Hosts using mod_ruid2 but this error still are showing. Please let me know, How to fixing on this issue? Apache Symlink Protection: the Bluehost provided Apache patch is in effect It appears...
  13. WebHostPro

    Can you symlink a folder in cPanel to another partition?

    Hi, I have a dedicated server that is running out of space in the home parition. I was wondering if I can symlink a folder in CPanel to the back up partition where I have a lot of free space available. I tried it but the user stays as root even when I try to change it so the cpanel user can't...
  14. Keeperax

    How does cPanel zip the access-logs symlink?

    I am trying to access the current (active) raw access logs in cPanel through SSH. For that, I found out that the access-logs symlink: lrwxrwxrwx 1 user user 34 Aug 6 03:00 access-logs -> /usr/local/apache/domlogs/user needs to be zipped. Zip is installed on the server but I am unable to zip...
  15. D

    Symlink Vs suPHP on multiple cpanel acconts

    Hi, I'm trying to migrate for a new dedicated server and I've encountered a few setbacks with suPHP as I did not have it before, but I would like to try and keep suPHP enabled since not all accounts in my server belongs to myself and it offers an extra security to my customers. On the other...
  16. T

    scripts symlink problem?

    Hello, i am using WHM version 11.56 i am having an issue with executing scripts inside /scripts directory. if i try to execute the backup command from /scripts/pkgacct i get the error /usr/local/cpanel/3rdparty/bin/perl: symbol lookup error...
  17. L

    symlink to dir in different home directory

    I need to create a symlink to a directory in a different cpanel account (different home directory). Regardless of how I create it (and with what user), the symlink'd directory is unavailable for the account user. I have gone into Service Configuration » Apache Configuration » Global...
  18. keat63

    ftp - symlink race condition problem

    I recently dropped Ruid2 in favour of SUphp with Race Symlink Protection, due to some conflicts with OWASP. When I had Ruid2, i connected to FTP using the root password, and drop them inside a users public_html folder, we could then open the newly ftp'd files via a browser. eg pdf's. Now when...
  19. N

    Missing access-logs symlink

    Hello, I've noticed that in 11.44.17 when creating a new user account via WHM, the access-logs symlink is no longer being created, nor is it created when restoring a cpmove or backup from a server that did have the symlink. I cannot find any mention of access-logs in the changelog, was...
  20. T

    Problem with symlink

    Hi I have symlink's on my site from years. Lately I noticed that if I clicked on the symlink using ftp I will get error: 550 test: No such file or directory But on my web the symlink still work fine. But the normal symlink that comes with my site like @www for public_html is working...