I'm paying for a VPS and hoping to launch my first website on it in the next few days.
I'm worried there might be some glaringly obvious security holes in the standard setup, so I'm keen to get some tips. About the only thing I know is to turn off error reporting in PHP and create users/privileges for MySQL. Any more stuff along those lines?
I'm using:
- cPanel and WHM
- CentOS 5
- PHP
- MySQL
- Google apps as mail server (so maybe I should disable built in mailer server somehow?!)