Hello, in Germany we have a mandatory imprint and privacy policy for websites, etc. How can I add a link to the footer?
How do I remove poweredBy from the footer? Due to security concerns.
Best regards
hume
Hello, in Germany we have a mandatory imprint and privacy policy for websites, etc. How can I add a link to the footer?
How do I remove poweredBy from the footer? Due to security concerns.
Best regards
hume
You can add a link in zammad → Admin → Public Links (under Manage)
Why do you want to remove the “powered by”? Everyone deserves to know what a great product you use.
Yes, Zammad is great. How likely is it that a hacker will hack systems in the future? For example, I’ve removed the notices from other systems, such as Nextcloud or Joomla, because there might be a version where a security vulnerability could be exploited.
Otherwise, thank you very much for the screenshot.
Best regards
hume
Is your zammad instance publicly accessible? If so, you have to worry about all the accessible services, not just zammad. The keyword you’re looking for is system hardening - adapting the configuration to be as strict as possible. This is one of the crucial parts of keeping them secure. What you’re trying to do is security by obscurity (hiding names, changing ports from well-known to something unusual, …) - those actions can help but only buy you some time and script kiddies won’t get far. If someone seriously attacks you, those actions won’t help in protecting your system.
What you trying to achieve is called “security by obsecurity”.
If a bad person wants to find out what you’re running, they will find out. If they want to break in, they eventually might find a way. Keeping stuff up to date is -in my opinion- and using best practises (in general) is the more important approach.
Aww shoot I was too slow.
The system is hardened, but it’s only intended to serve as an additional protective measure. Doesn’t it make sense then?
Best regards
hume
The separation is also intended to avoid uncertainty among private customers, since we, as a company in the energy sector, work with both corporate and private customers. Since the average citizen isn’t familiar with Zammad, only IT knows it.
I was able to find it with grep. However, it still shows up on the mobile site.
Best regards
hume