fsgl wrote on Sunday, November 30, 2014:
The only way to prevent OpenEMR from being hacked is to take it offline.
Since this is not possible for many practices, do the following:
- set up XAMPP Security Console, see part 5.
- secure OpenEMR & harden Apache.
For more secure communications between multiple sites, consider:
- VPN’s.
- 2 step authentication, second with tokens. Ideally it should be 3 steps.