100SILEX, de 0 à 100 s: documentation
1522 5 Simple steps to secure TT-RSS reader
secure tt-rss, tt-rss security
5 Simple steps to secure TT-RSS reader
July 27, 2015 by Anand Leave a Comment
Share: share htpcBeginner
We recently presented Tiny Tiny RSS to you as a great alternative to Google reader, which is one more way you can extend the functionality of your home server or your hosting space. Hopefully, you already exported your data from Google Reader. In this post, we will show you how to secure TT-RSS reader to prevent unauthorized access. Tiny Tiny RSS is an open source web-based news feed (RSS/Atom) reader and aggregator, designed to allow you to read news from any location, while feeling as close to a real desktop application as possible. As we previously explained, it makes an ideal candidate to replace Google Reader. While there are services like Feedly and Newsblur grabbing the crowd Google Reader, which some of you may prefer, there are a group of people who would like to run a RSS reader on their own server and keep things private. Assuming that you have already installed Tiny Tiny RSS on your alternative to Google reader or hosting space, we will now show you how to secure TT-RSS reader.
Secure TT-RSS Reader
One of the main reasons to move to an RSS aggregator like TT-RSS is maintaining your privacy. So if you do not secure TT-RSS reader well you are not only making your data available public but also making your system vulnerable to potential attacks. Choosing a strong username and password while setting your TT-RSS is the first basic thing that you can do to secure TT-RSS reader. Listed below are few more ways you can increase TT-RSS readerâs security.
1. Rename TT-RSS Folder
One of the first lines of defense is to not use tt-rss in your URL to access your TT-RSS reader. To do this on your hosting account, use a folder name other than tt-rss while installing TT-RSS. On your Linux home server, edit /etc/tt-rss/apache.conf and change the first /tt-rss to something else. An example is shown below.
TT-RSS Rename URL
TT-RSS Rename URL
After making the change, restart your TT-RSS and Apache to apply the changes:
sudo service tt-rss restart
sudo serivce apache2 reload
Your TT-RSS reader is now available through the new URL (example: http://mydomain.com/myreader) only.
Amazon Kindle Fire HDX
2. Enable SSL
Accessing TT-RSS through http sends all information as unencrypted data. This could mean less privacy due to potential sniffing. The solution is to encrypt the data during transfer, which makes sniffing by hackers harder. To enable and enforce HTTPS access on Linux servers with Apache, install the following run-time libraries:
sudo apt-get install libssl0.9.8 libpam0g openssl
Restart your Apache server as shown above. You should now be able to access your TT-RSS reader with HTTPS. Note that you may have to have a SSL certificate generated. Refer to Apache documentation if you want to generate your own certificate. By default, the system will install self-signed certificates for you. These certificates are likely to raise warnings when you point your browser to the site.
3. Disable Single User Mode
By default the single user mode is already disabled (in /etc/tt-rss/config.php). Enabling single user mode will also disable TT-RSS login system. Therefore, keep the single user mode disabled.
Disable Single User Mode
Disable Single User Mode
A better way to make it a single user system is by limiting the number of registrations to 1 as described below. For whatever reason, you still want to enable single user mode, make sure you implement Apache Authentication method described below.
4. Self Registrations
Self registrations allow a visitor to register themselves, which could reduce TT-RSS security. If your TT-RSS will be for personal use only, then you may want to disable user registration by setting âENABLE_REGISTRATIONâ to âfalseâ.
TT-RSS Self Registrations
TT-RSS Self Registrations
To further secure TT-RSS Reader, uou may also want to change âREG_MAX_USERSâ to â1â to make your account the only account on TT-RSS.
asus n66uASUS RT-N66U Dual-Band Wireless-N900 Gigabit Router
asus n66u reviewsFind out why it is rated the best wireless router in its class.
5. Apache Authentication
Last but not the least, enable Authentication. This is even more important if you have enabled âSingle User Modeâ describe above. Every time you access TT-RSS, you will be asked for a username and password as shown in the picture below:
Secure TT-RSS Reader
On your hosting account this equivalent to password protecting a directory, in this case the TT-RSS directory. To do this on your Ubuntu server, you will have to create a .htpasswd file. More information is available in Apache documentation. But the easiest way to achieve this is to use one of the htpasswd generators available online.
After you enter the username and password two code blocks will be generated. Copy the contents of the .htpasswd code block and save it to /etc/apache2/.htpasswd_ttrss. Next, copy the contents of the .htaccess code block and add it to /etc/tt-rss/apache.conf as shown below:
TT-RSS Apache Authentication
TT-RSS Apache Authentication
Save and exit. Restart both TT-RSS and Apache previous shown above. You should be prompted for a password every time you try to access TT-RSS. Some may think that this double authentication method is an extra inconvenience. But I would rather be safe than sorry.
Go ahead, secure Tiny Tiny RSS Reader and enjoy reading articles on your private secure RSS Reader.
1154 thÃ¨ses, publications
publications scientifiques, cours, theses, livres, edition, metis, polycop, cither, ressource pedagogique, edition electronique, scd docinsa, INSA de Lyon, SCD, Doc'INSA, docinsa, Service Commun de la Documentation, edition institutionnelle, archive institutionnelle, Moteur de recherche ORI-OAI
789 Documentation pour synthÃ©tiseurs.
Documentation pour synthÃÂ©tiseurs / Documentation for synthetizers
fabrice, synthe, synthetiseur, clavier, manuel, utilisation, utilisateur, notice, musique, home-studio, studio, music, synthesizer, keyboard, operating, instruction, owner, manual
769 Snyderphonics Manta - Un nouveau controleur qui risque de faire du bruit
VoilÃÂ un nouveau controleur tactile qui pourrait bien concurrencer, ÃÂ terme, le 222e Buchla. Cela ressemble ÃÂ ÃÂ§a: et voici les caractÃÂ©ristiques (en anglais): Citation:For instance, you could assign each sensor to a note in a musical scale, ...
722 Making AJAX Applications Crawlable - Google Code
If you're running an AJAX application with content that you'd like to appear in search results, we have a new process that, when implemented, can help Google (and potentially other search engines) crawl and index your content. Historically, AJAX applications have been difficult for search engines to process because AJAX content is produced dynamically by the browser and thus not visible to crawlers. While there are existing methods for dealing with this problem, they involve regular manual maintenance to keep the content up-to-date.
Learn why search engines don't see the content you see and what needs to happen to fix this.
Getting started guide
Get started in making your AJAX application visible to search engines. If you are in a hurry, you can start here, but AJAX crawling is a complex topic, so we recommend reading all the documentation.
Creating HTML snapshots
Learn more about creating HTML snapshots, and which technique might be best suited for your application.
Frequently asked questions
Having trouble? Check out the frequently asked questions.
Get the details.
Find a Dealer
Nothing Sounds Like an Eventide
Through the decades, top players have depended on Eventide: Jimmy Page, Frank Zappa, Brian May, Eddie Van Halen, Steve Vai, Robert Fripp, John Petrucci, and Adrian Belew, to name a few. Now, for the first time these effects are portable AND affordable. Stompbox simple, PitchFactor fits on your pedalboard or in your gigbag.
Studio Quality Effects at Your Feet
Top recording studios worldwide use Eventide effects on hit after hit. PitchFactor includes Eventide's best pitch-changing effects from the past 39 years without compromising quality OR flexibility.
Plug-and-play expression pedal control of wet/dry mix or any combination of parameters. Control program changes and vary parameters continuously via MIDI. Supports instrument or line level inputs and outputs. Plays well with others; adapts seamlessly with a wide variety of amps and other foot pedals.
Obsolescence is so 20th Century
Easy to upgrade; download new software from the Internet and install via USB.
10 of Eventideâs signature stereo or mono pitch+delay effects:
H910 / H949
Up to 4 voices of diatonic pitch shifting and up to 1.5 seconds of stereo delay
Studio quality sound
Guitar or bass compatible
Software upgradeable via USB 2.0
MIDI control via USB or MIDI in, out/thru
Instant program change
Real-time control with 10 knobs, MIDI, or expression pedal
Tap tempo and MIDI clock sync
100 factory presets, unlimited through MIDI
True analog bypass
Rugged cast metal construction
Reliable metal footswitches for instant preset access
Mono or stereo operation
Guitar or line level inputs and outputs
503 LA DISTRIBUTION NUMERIQUEMÃ©canismes et tendances
LÃ¢ÂÂIrma est un centre dÃ¢ÂÂinformation et de ressources spÃÂ©cialisÃÂ© pour les musiques actuellesÂ : chanson, jazz, rock, hip hop, ÃÂ©lectro, musiques traditionnelles et du mondeÃ¢ÂÂ¦
musique, jazz, musiques traditionnelles, rock, chanson, formation, information, ressources, documentation, correspondant, fiches pratiques, fil rouge, techno, rap, hip hop, eurobase, base de donnees, reseau, irma, ibase, amplifiÃ©e, centre, actuelles, emploi, stage, petites annonces, Ã©lectronique
376 Foobar2000:Title Formatting Reference - Hydrogenaudio Knowledgebase
This article contains information about built-in titleformatting functions and field references with special meaning. References to documentation about fields and function which can only be used in specific components or which are provided by specific components can be found at the end of this article.
A field reference is a field name enclosed in percent signs, for example %artist%. A function call starts with a dollar sign, followed by the function name and the parameter list. A parameter list can either be empty - denoted as () - or contain one or more parameters separated by commata, for example $abbr(%artist%). Note that there must be no whitespace between the dollar sign and the function name, or the function name and the opening parenthesis of the parameter list.
Please see Title Formatting Introduction for a presentation of titleformat syntax in general. For details of the query syntax, which uses these fields, see: Query Syntax.
273 How to be a Programmer: A Short, Comprehensive, and Personal Summary
How to be a Programmer: A Short, Comprehensive, and Personal Summary
Robert L Read
Copyright 2002, 2003 Robert L. Read
Copyright 2002, 2003
by Robert L. Read. Permission is granted to copy, distribute and/or modify this document under the terms of the GNU Free Documentation License, Version 1.2 or any later version published by the Free Software Foundation; with one Invariant Section being âHistory (As of February, 2003)â, no Front-Cover Texts, and one Back-Cover Text: âThe original version of this document was written by Robert L. Read without renumeration and dedicated to the programmers of Hire.com.â A copy of the license is included in the section entitled âGNU Free Documentation Licenseâ.
101 - 201