Posted on March 6, 2008. Filed under: Apache, Hosting, Leopard, OSX, Servers | Tags: HFS+, namedfork, rsrc, secure |
Security Update 2004-12-02 makes changes to the httpd.conf file. After a successful update, the Apache configuration file will deny access to the following files:
- */..namedfork/data
- */..namedfork/rsrc
- */rsrc
- rsrc
- .ht* (case insensitive)
- .ds_s* (case insensitive)
Warnings:
- The configuration changes that block named-fork exposure apply only to the default webserver, apache1. If you’ve chosen to use Apache2, it’s recommended that you serve content from a UFS volume.
- For important related information, see “mod_hfs_apple” protects web content against case insensitivity in the HFS file system. (more…)
Read Full Post |
Make a Comment
( None so far )
Recently on Mac OSX Hosting!...
Posted on February 22, 2008. Filed under: Leopard, OSX, Software | Tags: fibre, multiSAN, pci-X card, raid, san, xsan, zelenka |
Posted on February 20, 2008. Filed under: Hosting, Leopard, OSX, Servers, Software | Tags: -la, cd, command line, dir, ls, pid, terminal, unix |
Posted on February 18, 2008. Filed under: Hosting, Servers, Software | Tags: freebsd, freeNAS, raid, samba, storage, web OS |
Posted on February 18, 2008. Filed under: Content Management, OSX, Software, Web Development | Tags: blog, cms, content, installing, management, osx 10.4, Software, tiger, wordpress |
Posted on February 13, 2008. Filed under: Apache, Hosting, Leopard, OSX, Servers, Software, Web Development | Tags: Apache, blog, installing, internet, local, movable type, mtdbmovabletype.sql, tiger, weblog |
Posted on February 7, 2008. Filed under: Leopard, OSX, Servers, Software | Tags: admin, apple, ARD, client, LDAP, local, remote desktop |