Hello,
I was able to set this up very quick. But i have a few questions.
How can i control the user security settings.
I have installed wpmu on a live domain, therefore i need a quick"update" on the things that need to betaken care of.
My blog systems always seem to be found first by spammers and hackers or script kiddies, they tend to fool around with everthing they can find, just to make use of it for the purpose of ;sending spam;installing spyware or viruses on their blogs.
I've already written ablog system wich allows very little to be done by users(actually only the basics are allowed, text,links,images.
Not allowed are ;iframes;javascript;script;meta-tags;and a lot more..
Since i am new to wpmu i would like to know if there're things that i need to know , to prevent these kind of "attacks".
I plan to use wpmu on about 20 other domains, therefore I care more about wpmu webmaster issues and problems than user specific problems or desires.
Can anyone enlighten me about the possible (bad)things that can happen to me, by registered users?
Are there possible xss attack (cross site scripting)issues, or can anyone exploit javascript in anyt way?
Furthermore,can anyone tell me what the user e-mail server setting does, is this dangerous or can this be exploited in any way, looking from a webmasters point of view?
My wpmu is installed at dagboek if anyone familiar with wpmu on a live site can check if everything is set up right, that would be greatly appreciated.
Ps If you know anything that i need to know of, but if you don't want to post it here(it's a sensative subject), please e-mail it to me.(There is definately a lot depending on this server so really nothing can go wrong with one of the scripts installed on my account, please fill me in with the security stuff!
)