How to protect the xampp directory?

fsgl wrote on Sunday, November 30, 2014:

The only way to prevent OpenEMR from being hacked is to take it offline.

Since this is not possible for many practices, do the following:

  1. set up XAMPP Security Console, see part 5.
  2. secure OpenEMR & harden Apache.

For more secure communications between multiple sites, consider:

  1. VPN’s.
  2. 2 step authentication, second with tokens. Ideally it should be 3 steps.