How To Harden PHP5 With Suhosin On CentOS 5.4 | Linux Today

How To Harden PHP5 With Suhosin On CentOS 5.4

Written By
FT
Falko Timme
Mar 15, 2010

[ Thanks to Falko
Timme
for this link. ]

“This tutorial shows how to harden PHP5 with Suhosin on
a CentOS 5.4 server. From the Suhosin project page: “Suhosin is an
advanced protection system for PHP installations that was designed
to protect servers and users from known and unknown flaws in PHP
applications and the PHP core. Suhosin comes in two independent
parts, that can be used separately or in combination. The first
part is a small patch against the PHP core, that implements a few
low-level protections against bufferoverflows or format string
vulnerabilities and the second part is a powerful PHP extension
that implements all the other protections.”

“1 Preliminary Note

“I have tested this on a CentOS 5.4 server with the IP address
192.168.0.100.

“I will install both Suhosin parts in this tutorial, the Suhosin
patch (for which we need to recompile PHP5) and the Suhosin PHP
extension. To see what Suhosin can do, please refer to
http://www.hardened-php.net/suhosin/a_feature_list.html. The
features of the Suhosin patch are listed under Engine Protection
(only with patch); all the other features come with the Suhosin
extension.”


Complete Story

FT

Falko Timme

Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.