Jump to content

Akeeba Backup


rev.dennis

Recommended Posts

Really excellent software for backing up and restoring your Joomla site

 

Some Notes, change the default kickstart.php to something else or you'll get the following error

 

Quote

 

Akeeba Kickstart Professional – Insecure setup detected

Akeeba Kickstart has detected that its file name is kickstart.php. Please change the file name to something which does not begin with kickstart and ends with .php. For example, you could rename the file to myexample.php Then you can access this file by replacing kickstart.php with the new name in the address bar of your browser.

Why do you need to do that?

Due to its nature, Akeeba Kickstart will execute commands sent to it by any web visitor. There is no way to verify the visitor's identity. Since Akeeba Kickstart Professional allows you to import ZIP archives from arbitrary URLs an attacker can use it to load malware to your site while you are restoring your site. Your only protection is to rename Kickstart's file to prevent the attacker from using Akeeba Kickstart Professional against you.

If you do not need the additional features of Akeeba Kickstart Professional you are strongly advised to use Akeeba Kickstart Core. Since it lacks the ability to import remote files it's safe to use without renaming the file.

 

 

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...