• Home
  • Research
  • What We Offer
  • Who We Are
  • Blog
  • Your cart is empty.
  • Log in
  • Subscribe
  • Free Sample
  • Contact
  • Recent Entries
  • Get Custom Feeds
Team Blog
Free Research Sample
Byrne

Joomla!, open source, and security

Added By Tony Byrne at 3-Jan-2008 | Twitter: @TonyByrne |

Some people prefer the open source, PHP-based Joomla! Web CMS because it is relatively simple to install and run. But just as complexity can bring unexpected problems, so too can simplicity. In this case, Joomla!'s default installation has never been considered very secure. So it was good to stumble upon a very nice primer for securing a Joomla! installation.

To be fair, other Web CMS tools are similarly exposed upon install, and although I haven't done a scientific study, I've sensed over the years that the PHP-based systems have been particularly troublesome in this regard. More generally, you need to be especially careful about open-source CMS tools -- not because they are inherently less secure than commercial offerings (in fact, holes are typically found and patched faster by open source communities) -- but because they are downloaded and installed (at least tested) in such great numbers that they make attractive targets, especially for bots.

One of the first articles we published on this site was about security, and I don't think the Web CMS landscape has gotten much better in this regard during the intervening 6 years. So when you install a new system (even just to try it out), and it is facing the public web, be sure to read the security docs first...

Categories: Tony Byrne, Web Content Management, Implementation, Open Source, Joomla!

  • Tweet This Entry

Online Education

Check out our classes and Register Today.

Evaluation Research

Get the real story about vendors and products.

My Research

Remember MeForgot password?

Not a subscriber? Learn about our subscriptions

Categories

Channel

  • Collaboration & Community Software (128)
  • Web Analytics (151)
  • Web Content Management (802)

Analyst

  • Adriaan Bloem (46)
  • Tony Byrne (661)
  • Apoorv Durga (8)
  • Jarrod Gingras (33)
  • Alan Pelz-Sharpe (65)
  • Theresa Regli (36)
  • Kas Thomas (77)

Topics

  • Asia-Pacific Marketplace (3)
  • Building Business Case (142)
  • Cloud Computing (6)
  • E-Discovery (1)
  • European Marketplace (16)
  • Governance (14)
  • Implementation (218)
  • Industry Events (1)
  • Industry Standards (111)
  • Information Architecture (84)
  • Intranets (6)
  • Marketplace at Large (505)
  • Open Source (93)
  • Selecting Technology (548)
  • Services Oriented Architecture (4)
  • Software-as-a-Service (18)
  • Usability (7)
  • Vendor Viability & Financials (129)
  • XML (28)

Industries

  • Finance (2)
  • Government (21)
  • Health Care (2)
  • Higher Ed (7)
  • Legal (1)
  • Manufacturing (2)
  • Pharma (1)
  • Publishing-Media (4)
  • Retail (7)

Dates

  • 2010 (69)
  • 2009 (200)
  • 2008 (223)
  • 2007 (166)
  • 2006 (99)
  • 2005 (104)
  • 2004 (58)
  • 2003 (67)
  • 2002 (67)
  • 2001 (28)

Have Questions?

Sales & Customer Support

+1 800 325 6190 (USA)+44 (0) 20 3318 1911 (UK)+1 617 340 6464 (Int'l)sales@realstorygroup.com support@realstorygroup.com

All other inquiries: info@realstorygroup.com

Copyright, 2001 - 2010, Real Story Group. All rights reserved.

  • Contact Us
  • Copyright Policy
  • Privacy Policy
  • Terms of Use

The Real Story Group

  • CMS Watch
  • Enterprise Information
       Watch
  • SharePoint Watch
  • The Real Story Group

Research

  • Vendor Evaluations
  • Webinars & Advisory Papers
  • Online Education
  • Vendor Lists
  • Free Research Sample
  • Purchase Now

What We Offer

  • Research & Advisory
       Services
  • Frequently Asked Questions
  • Consulting Services
  • Customer Support
  • Contact Sales Team

Who We Are

  • We're Different
  • Our Team
  • Media
  • Customer List
  • Events
  • Contact Us

Get the real story via our bi-weekly newsletter.

Follow us on: RSS twitter

Log In

Remember MeForgot password?