home | list info | list archive | date index | thread index

Re: [OCLUG-Tech] Apache sercuity question

  • Subject: Re: [OCLUG-Tech] Apache sercuity question
  • From: Bart Trojanowski <bart [ at ] jukie [ dot ] ca>
  • Date: Tue, 13 Dec 2011 10:02:04 -0500
2011/12/13 Jean-François Bilodeau <jfbilodeau [ at ] chronogears [ dot ] com>

> May I recommend that instead of banning, you close the security hole?
> Disable whatever is allowing content access via ?xxx=.
>
>
Doesn't that mean stopping apache?

I am not a web developer of any means, but I think you can pass a ?xxx=
request to index.html.  Since the .html is not dynamic, it will just ignore
the ?xxx= part.

-Bart

replies

references