Apache安全配置建议如下: <Directory /var/www/html> Options -Indexes -Includes </Directory>
<Directory /> Order deny,allow Deny from all </Directory> <Directory "/var/www/www.example.com"> Order allow,deny Allow from all </Directory> 8、隐藏特征,不展示Web服务器类型和版本 ServerSignature Off ServerTokens Prod 9、目录访问限制,可以设置重要目录只允许特定的IP访问 <Directory "/var/www/www.example.com/admin"> order deny,allow deny from all allow from 10.1.0.0/16 </Directory>(责任编辑:IT) |