Get Paid to Participate - up to $1 per post!     Twitter     Facebook     Google+
Hosting Discussion
 

forgot password?



Reply


Old
  Post #1 (permalink)   05-07-2016, 05:45 PM
HD Master
 
whmcsguru's Avatar
 
Join Date: May 2016
Posts: 285
Send a message via Skype™ to whmcsguru

Status: whmcsguru is offline
I'm not referring to the 'hacks' of earlier. I'm actually referring to the security of data, of the ability for admins to take control over various aspects of their install, such as blocking out countries known for fraud, locking down admin directories to certain IP's (or even countries), locking down orders to only certain countries, blocking certain browsers (known bots, etc).

What do you think? Is WHMCS doing enough to protect it's clients ? Should they be doing more? What would you like to see added here? Just doing a bit of research here.
__________________
WHMCS Guru - WHMCS addons, management, support and more.
WHMCS Notifications Extended - Add slack, hipchat, SMS, pushover to your WHMCS install!
WHMCS User and IP Extended Control - Take control of your WHMCS install
Linux admin, WHMCS Guru for hire. PM me for more information
 
 


Old
  Post #2 (permalink)   05-10-2016, 05:35 AM
HD Master
 
zomex's Avatar
 
Join Date: Jul 2010
Posts: 355

Status: zomex is offline
Hello,

I think with any company they could always do more but they're certainly been focusing a lot of security over the last 12 months. Since partnering with cPanel there's been a lot of good focus on security.

I'd like to see WHMCS not include any modules out of the box, instead you can download/install only the modules you use a bit like how Wordpress works with plugins. That would be a nice security feature.

I don't like the idea of blocking access from certain countries as there is good and bad customer's from every country.

In terms of fraud I've had the biggest problem with France and the UK which always surprises me as I would have thought it would be a country such as Vietnam/Indonesia. So I don't discriminate against any country.
__________________
Zomex ~ In business since 2009 and still going strong!
Web hosting templates - Allowing you to > start a web hosting reseller business
█ #1 responsive whmcs templates | whmcs integration | whmcs configuration
 
 


Old
  Post #3 (permalink)   05-10-2016, 10:08 AM
HD Master
 
whmcsguru's Avatar
 
Join Date: May 2016
Posts: 285
Send a message via Skype™ to whmcsguru

Status: whmcsguru is offline
No modules out of the box would likely cause problems. Keep in mind that even gateway processors are modules. This would likely only cause more customer frustration and resentment.

As far as blocking out countries, honestly, this has multiple benefits. I work with a few clients who host specifically for certain countries. In fact, when it comes down to it, nobody else should order from them. Well, WHMCS doesn't provide a way to do that out of the box. In addition, most sites only need admin accessing from one country, or one IP. Sure, htaccess can do that, but from my perspective, this is something that should have been built in from the get go.
__________________
WHMCS Guru - WHMCS addons, management, support and more.
WHMCS Notifications Extended - Add slack, hipchat, SMS, pushover to your WHMCS install!
WHMCS User and IP Extended Control - Take control of your WHMCS install
Linux admin, WHMCS Guru for hire. PM me for more information
 
 
 


Old
  Post #4 (permalink)   05-10-2016, 10:26 AM
HD Master
 
whmcsguru's Avatar
 
Join Date: May 2016
Posts: 285
Send a message via Skype™ to whmcsguru

Status: whmcsguru is offline
Adding to this, and I should have probably thought of this before I hit submit...

Why add an 'email verification' procedure if you're going to just do nothing with it? It's like they want people to just ignore things, I swear.
__________________
WHMCS Guru - WHMCS addons, management, support and more.
WHMCS Notifications Extended - Add slack, hipchat, SMS, pushover to your WHMCS install!
WHMCS User and IP Extended Control - Take control of your WHMCS install
Linux admin, WHMCS Guru for hire. PM me for more information
 
 
 


Old
  Post #5 (permalink)   05-12-2016, 03:17 AM
HD Guru
 
Join Date: Jan 2013
Posts: 756
Send a message via AIM to cheapdedicated Send a message via Yahoo to cheapdedicated Send a message via Skype™ to cheapdedicated

Status: cheapdedicated is offline
Quote:
Originally Posted by whmcsguru View Post
No modules out of the box would likely cause problems. Keep in mind that even gateway processors are modules. This would likely only cause more customer frustration and resentment.
Well The modules can still be available for download so if you want a processor you download one. Fortunately (Or I think so) Most WHMCS users are not completely ignorant so it should be very easy for them to single out what they need or they dont. Of course at the start it would lead to alot of support request but the power over what I need in my stsyem should be handed back to the user.
__________________
Techsys Ltd | Dedicated Servers | V.P.S | Free Plesk Panel
G8 Servers cPanel Reseller VPS Reseller Dedicated Server Resellers

G8 Host Cheap Domains | Shared Hosting | SSL
 
 


Old
  Post #6 (permalink)   05-12-2016, 10:13 AM
HD Master
 
whmcsguru's Avatar
 
Join Date: May 2016
Posts: 285
Send a message via Skype™ to whmcsguru

Status: whmcsguru is offline
Making the customer do that much more work isn't going to solve any real security issues, it'll just frustrate and alienate your customers.
__________________
WHMCS Guru - WHMCS addons, management, support and more.
WHMCS Notifications Extended - Add slack, hipchat, SMS, pushover to your WHMCS install!
WHMCS User and IP Extended Control - Take control of your WHMCS install
Linux admin, WHMCS Guru for hire. PM me for more information
 
 
 


Old
  Post #7 (permalink)   05-12-2016, 10:19 AM
HD Guru
 
Join Date: Jan 2013
Posts: 756
Send a message via AIM to cheapdedicated Send a message via Yahoo to cheapdedicated Send a message via Skype™ to cheapdedicated

Status: cheapdedicated is offline
Quote:
Originally Posted by whmcsguru View Post
Making the customer do that much more work isn't going to solve any real security issues, it'll just frustrate and alienate your customers.
Well wordpress has been giving us more and more powers over plugins and sont we all like it?
__________________
Techsys Ltd | Dedicated Servers | V.P.S | Free Plesk Panel
G8 Servers cPanel Reseller VPS Reseller Dedicated Server Resellers

G8 Host Cheap Domains | Shared Hosting | SSL
 
 
 


Old
  Post #8 (permalink)   05-12-2016, 04:48 PM
HD Community Advisor
 
SenseiSteve's Avatar
 
Join Date: Mar 2009
Location: Saint Louis
Posts: 4,975
Send a message via MSN to SenseiSteve

Status: SenseiSteve is offline
I don't know, but I'm not feeling the pain yet with WHMCS.
__________________
ProlimeHost- Dedicated Server Hosting & KVM SSD VPS
Three Datacenter Locations: Los Angeles, Denver & Singapore
SuperMicro Hardware | Multiple Bandwidth Providers | 24/7 On Site Engineers
 
 
 


Old
  Post #9 (permalink)   05-13-2016, 02:25 PM
HD Master
 
whmcsguru's Avatar
 
Join Date: May 2016
Posts: 285
Send a message via Skype™ to whmcsguru

Status: whmcsguru is offline
Quote:
Originally Posted by cheapdedicated View Post
Well wordpress has been giving us more and more powers over plugins and sont we all like it?
There's a difference between Wordpress and WHMCS. The two aren't even remotely close in this perspective.
__________________
WHMCS Guru - WHMCS addons, management, support and more.
WHMCS Notifications Extended - Add slack, hipchat, SMS, pushover to your WHMCS install!
WHMCS User and IP Extended Control - Take control of your WHMCS install
Linux admin, WHMCS Guru for hire. PM me for more information
 
 
 


Old
  Post #10 (permalink)   05-16-2016, 03:54 AM
HD Guru
 
Join Date: Jan 2013
Posts: 756
Send a message via AIM to cheapdedicated Send a message via Yahoo to cheapdedicated Send a message via Skype™ to cheapdedicated

Status: cheapdedicated is offline
Quote:
Originally Posted by whmcsguru View Post
There's a difference between Wordpress and WHMCS. The two aren't even remotely close in this perspective.
The two are mentioned to show that Just like wordpress gives users power over their plugins without bundling them into the default installation, WHMCS can do the same with the modules. I hope you now get the reason the two are mentioned here.
__________________
Techsys Ltd | Dedicated Servers | V.P.S | Free Plesk Panel
G8 Servers cPanel Reseller VPS Reseller Dedicated Server Resellers

G8 Host Cheap Domains | Shared Hosting | SSL
 
 
 
Reply

Thread Tools

New Post New Post   Old Post Old Post
Posting Rules:
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Sponsored By: