﻿﻿﻿<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>NitrouZ Personal Pages &#187; backtrack</title>
	<atom:link href="http://xtremenitro.org/tag/backtrack/feed" rel="self" type="application/rss+xml" />
	<link>http://xtremenitro.org</link>
	<description>Do What The Fvck You Want To</description>
	<lastBuildDate>Tue, 07 Feb 2012 08:17:14 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>[Tutorial] Instalasi suhosin pada Backtrack</title>
		<link>http://xtremenitro.org/2008/11/08/tutorial-instalasi-suhosin-pada-backtrack.html</link>
		<comments>http://xtremenitro.org/2008/11/08/tutorial-instalasi-suhosin-pada-backtrack.html#comments</comments>
		<pubDate>Sat, 08 Nov 2008 11:48:31 +0000</pubDate>
		<dc:creator>drubicza</dc:creator>
				<category><![CDATA[*BSD]]></category>
		<category><![CDATA[backtrack]]></category>
		<category><![CDATA[instalasi]]></category>
		<category><![CDATA[Networking & Server]]></category>
		<category><![CDATA[suhosin]]></category>

		<guid isPermaLink="false">http://xtremenitro.org/?p=97</guid>
		<description><![CDATA[Berikut ini keterangan singkat dari situsnya Suhosin is an advanced protection system for PHP installations. It was designed to protect servers and users from known and unknown flaws in PHP applications and the PHP core. Suhosin comes in two independent parts, that can be used separately or in combination. The first part is a small [...]]]></description>
			<content:encoded><![CDATA[<p>Berikut ini keterangan singkat dari <a href="http://www.hardened-php.net/suhosin/" target="_blank">situsnya</a></p>
<blockquote><p>Suhosin is an advanced protection system for PHP installations. It was designed to protect servers and users from known and unknown flaws in PHP applications and the PHP core. Suhosin comes in two independent parts, that can be used separately or in combination. The first part is a small patch against the PHP core, that implements a few low-level protections against bufferoverflows or format string vulnerabilities and the second part is a powerful PHP extension that implements all the other protections.</p>
<p>Unlike the PHP Hardening-Patch Suhosin is binary compatible to normal PHP installation, which means it is compatible to 3rd party binary extension like ZendOptimizer.</p></blockquote>
<ol>
<li>Download <strong>hardened-php-signature-key<br />
</strong></p>
<pre>$ wget http://www.hardened-php.net/hardened-php-signature-key.asc</pre>
</li>
<li>Import key nya kedalam keyring gpg
<pre>$ gpg --import &lt; hardened-php-signature-key.asc
gpg: key 0A864AA1: public key "Hardened-PHP Signature Key" imported
gpg: Total number processed: 1
gpg:               imported: 1</pre>
</li>
<li>Download signature suhosin
<pre>$ wget http://download.suhosin.org/suhosin-0.9.27.tgz.sig</pre>
</li>
<li>Verifikasi signature suhosinnya dengan menggunakan gpg
<pre>$ gpg suhosin-0.9.27.tgz.sig
gpg: Signature made Sat Aug 23 09:19:36 2008 UTC using DSA key ID 0A864AA1
gpg: Good signature from "Hardened-PHP Signature Key"
gpg: WARNING: This key is not certified with a trusted signature!
gpg:          There is no indication that the signature belongs to the owner.
Primary key fingerprint: 066F A6D0 E57E 9936 9082  7E52 4439 14CC 0A86 4AA1</pre>
</li>
<li>Download source suhosin
<pre>$ wget http://download.suhosin.org/suhosin-0.9.27.tgz</pre>
</li>
<li>Buat file md5 untuk source tersebut lalu simpan dengan nama <strong>suhosin.md5</strong>, isinya sebagai berikut:
<pre>9aae02bc2d2bcf9b8bd97cd22f56a8b8  suhosin-0.9.27.tgz</pre>
</li>
<li>Verifikasi md5sum sourcenya dengan file &#8220;suhosin.md5&#8243; tadi
<pre>$ md5sum -c suhosin.md5 suhosin-0.9.27.tgz: OK</pre>
</li>
<li>Sekarang kita unpack sourcenya
<pre>$ tar xzvf suhosin-0.9.27.tgz</pre>
</li>
<li>Lalu kita masuk ke direktori source yang sudah di-unpack
<pre>$ cd suhosin-0.9.27</pre>
</li>
<li>Jalankan phpize
<pre>$ phpize
Configuring for:
PHP Api Version:         20020918
Zend Module Api No:      20020429
Zend Extension Api No:   20050606</pre>
</li>
<li>Lalu configure, untuk mengetahui switch apa saja yang bisa digunakan, bisa dengan menambahkan argumen <em>&#8211;help</em> setelah perintah <em>configure</em>
<pre>$ ./configure</pre>
</li>
<li>Lalu waktunya untuk build
<pre>$ make</pre>
</li>
<li>Hasil kompilasi akan ditempatkan pada sub direktori <em>modules</em>
<pre>$ ls modules/
suhosin.la  suhosin.so*</pre>
</li>
<li>Pindahkan (copy/move) module <strong>suhosin.so</strong> ke direktori extension php misalnya
<pre>$ sudo -s
# mkdir /usr/local/lib/php/extensions
# cp modules/suhosin.so /usr/local/lib/php/extensions/</pre>
</li>
<li>Edit file konfigurasi php (mis: /usr/local/lib/php.ini) untuk me-load modul suhosin
<pre>extension_dir = "/usr/local/lib/php/extensions" extension=suhosin.so</pre>
</li>
<li>Restart apache (dengan cara yang sedikit kasar &#58;&#112;)
<pre># apachectl restart</pre>
</li>
<li>Buat file test.php di <em>document root</em> server yang isinya :
<pre>&lt;?php phpinfo(); ?&gt;</pre>
</li>
<li>Test suhosin dengan mengakses halaman test.php di browser
<pre>http://localhost/test.php</pre>
</li>
<li>Maka akan tampak seperti ini jika suhosinnya sudah berjalan :
<p><div id="attachment_100" class="wp-caption alignnone" style="width: 310px"><a href="http://xtremenitro.org/wp-content/uploads/2008/11/php44.jpg" rel="thumbnail"><img class="size-medium wp-image-100" title="PHP 4.4.4 Info ()" src="http://xtremenitro.org/wp-content/uploads/2008/11/php44-300x234.jpg" alt="PHP 4.4.4 Info ()" width="300" height="234" /></a><p class="wp-caption-text">PHP 4.4.4 Info ()</p></div></li>
<li>Selanjutnya tinggal memasukkan konfigurasi suhosin pada file php.inisesuai dengan petunjuk yang ada di <a href="http://www.hardened-php.net/suhosin/configuration.html" target="_blank">situs suhosin</a>.</li>
<li>Pengujian dilakukan pada backtrack2 dengan apache 1.3.3.7 dan php 4.4.4</li>
</ol>
]]></content:encoded>
			<wfw:commentRss>http://xtremenitro.org/2008/11/08/tutorial-instalasi-suhosin-pada-backtrack.html/feed</wfw:commentRss>
		<slash:comments>5</slash:comments>
		</item>
	</channel>
</rss>

