服务器教程

Apache隐藏版本号及其它敏感信息

时间:01-14   作者:YDW   来源:YDW.ORG   阅读:141  
内容摘要:文件:conf/extra/httpd-.conf最终如下(文件:conf/extra/httpd-.conf)说明:1、出现在所产生的像404页面、目录列表等页面的底部。HTTP响应包的头部填充什么信息。如果把设为Prod,那么HTTP响应包头就会被设置成::

云端网 - www.ydw.org

文件:conf/extra/httpd-.conf

ServerTokens Full 改成 ServerTokens Prod

ServerSignature On 改成 ServerSignature off

最终如下(文件:conf/extra/httpd-.conf)

#
# ServerTokens
# This directive configures what you return as the Server HTTP response
# Header. The default is 'Full' which sends information about the OS-Type
# and compiled in modules.
# Set to one of:  Full | OS | Minor | Minimal | Major | Prod
# where Full conveys the most information, and Prod the least.
#
ServerTokens Prod
#
# Optionally add a line containing the server version and virtual host
# name to server-generated pages (internal error documents, FTP directory 
# listings, mod_status and mod_info output etc., but not CGI generated 
# documents or custom error documents).
# Set to "EMail" to also include a mailto: link to the ServerAdmin.
# Set to one of:  On | Off | EMail
#
ServerSignature Off

说明:

1、出现在所产生的像404页面、目录列表等页面的底部。

2、目录被用来判断会在 HTTP响应包的头部填充什么信息。

如果把设为Prod,那么HTTP响应包头就会被设置成::

(云端网 )

www.ydw.org - 云端网


标签:版本号  Apache版本号  Apache配置信息  Apache敏感信息  
网站版权  8888888888  8888888888