...
- Login to your "ColdFusion Administrator Account"
- Navigate to "Security -> Sandbox Security"
- Then -> "Enable ColdFusion Security" and "Submit Changes"
- Add the path for your FarCry Installation in "Add Security Sandbox"
For example: /var/www/webX/html (webroot path of your virtual host) - Now edit the new "Sandbox" with the following parameters:
No Format |
---|
DATA SOURCES :: Disable ALL datasource that do not belong to your FC-Project !
|
No Format |
---|
CF TAGS :: Disable the following CF-Tags:
- CFDBInfo
- CFFTP
- CFRegistry
|
No Format |
---|
CF FUNCTIONS :: Disable the following CF-Functions:
- CreateObject(.NET)
- CreateObject(COM)
- CreateObject(CORBA)
- CreateObject(WebService)
- GetTempFile
- SetProfileString
|
No Format |
---|
FILES/DIRS :: Configuration
HINT:
If u use "Verity-K2 Server", you have to create a "webX" directory under: "/opt/jrun4/verity/collections/".
You also have to define that verity path in your FarCry Project !!!
Set the directory permission to "0755" and set the directory owner to the user that ColdFusion runs
on your server !
If you don't use the "Verity-K2 Server" you can ommit the two path conifigurations lines !!! |
...
File Path Permissions /var/www/webX/html/- :: Read,Write,Execute,Delete /opt/jrun4/servers/cfusion/SERVER-INF/temp/cfusion.war-tmp/ |
...
- :: Read,Write,Execute,Delete |
...
/opt/jrun4/servers/cfusion/SERVER-INF/lib/ |
...
- :: Read,Execute |
...
|
...
/opt/jrun4/servers/cfusion/cfusion.ear/cfusion.war/WEB-INF/cftags/ |
...
- :: Read,Execute |
...
/opt/jrun4/verity/ |
...
- :: Read,Execute |
...
/opt/jrun4/verity/collections/webX/ |
...
- :: Read,Write,Execute,Delete |
...
|
- Click onto the "Finish" button !
- Now restart the ColdFusion server !
...