First off, I posted this on RocketTheme.com because I find this community much more helpful - your topics don't get ignored or burried and the people here are not only genuine but very helpful.
So my question is this - what's the best way to secure your site running 1.5? I'm guessing my problem stems from opening up the permissions to the config.php file so that I could make changes through the ACP.
So is the safest way not to be hacked to keep all the permissions for everything 0644 until you need to make a change? Or is there a way to open up the permissions to files so you can easily make changes through the ACP?
As always, I appreciate any feedback, questions, or comments.
p.s. - I'm not a newbie, I've been around for a few years - my username was reset when I purchased my yearly license a few weeks ago.