Security Architecture & Controls
Overview of Defense-in-Depth Mechanisms
Protected Document Root Architecture
Application source code, dependencies, configuration, and encrypted credentials are kept strictly outside the web document root (public_html/), making them completely inaccessible to external web spiders.
SSRF & DNS Rebinding Mitigation
The portal verifies all submitted hostnames against DNS records and strictly rejects connections directed to loopback, private RFC1918 subnets, link-local addresses, or cloud metadata services (e.g., 169.254.169.254). Port scan attempts on sensitive services (MySQL, Redis, SMTP, HTTP) are blocked at the application level.
Path Confinement & Jail Enforcement
Remote paths are canonicalized on the server to prevent directory traversal attacks (../ or encoded variations). If an FTP account is configured with a root directory, the server prevents navigation, renaming, or deletion outside that permitted jail.
Kill-Switch & Incident Response
During an active security investigation, administrators can engage the system-wide Emergency File Modification Lock to instantly disable all file modifications, uploads, renames, and deletions across all connections.