I have a habit of using Kate to edit files in webspace directly, which creates temporary files in the format filename~ - e.g. myfile.php~. The problem with this is that apache then serves these files as text, so the contents of any php pages (potentially including sensitive information) are dumped straight to the browser. What is the best method for getting ISPconfig to tighten up on this? Or should I go directly to the Apache config files? Thanks..!