I'd agree, couldn't the FTP login be tied to your forum login? Then any changes (malicious or otherwise) could be tracked to who and when. Proper measures to prevent further errors could then be taken.
Anonymous login could be set to allow download only, while it would take forum credentials to upload.
|