Apache响应头Header安全建议
当我们部署完LAMP后,测试页面输出时,可以看到http响应头里有如下header:
Server:
Apache/2.2.3 (Red Hat)
X-Powered-By:
PHP/5.1.6
显示了服务器一些敏感信息,这是不安全的,因此我们需要调整
关闭 “X-Powered-By: PHP/5.1.6″ 的显示:
修改php.ini
expose_php = Off
简化 “Server:Apache/2.2.3 (Red Hat)” 的输出:
修改httpd.conf
ServerTokens Prod
相关推荐
kentrl 2020-11-10
咻咻ing 2020-07-04
wghou 2020-06-16
zkwgpp 2020-06-14
xiechao000 2020-05-18
woniyu 2020-05-14
ysmh00 2020-05-14
0与的世界 2020-04-28
worldkun 2020-05-10
carolAnn 2020-04-20
zengni 2020-02-29
hygbuaa 2020-02-26
zhaolisha 2020-02-24
server { listen 80; server_name ××××.com; access_log /×××/×××/nginx/log/access.log; error_log /×××/×
咻咻ing 2020-02-02
JF0 2020-01-31
OwenJi 2020-01-17
webfullStack 2020-01-10