|
|
|
@ -108,33 +108,32 @@ This will prevent direct access to your settings and make it seem totally the sa |
|
|
|
your VirtualHost definition in Apache (you'll have to translate it for |
|
|
|
your VirtualHost definition in Apache (you'll have to translate it for |
|
|
|
Nginx configurations), where "/var/www/URL/" is the path of your VirtualHost web root:<br /> |
|
|
|
Nginx configurations), where "/var/www/URL/" is the path of your VirtualHost web root:<br /> |
|
|
|
<pre> |
|
|
|
<pre> |
|
|
|
<Directory /var/www/URL/app/cache> |
|
|
|
<Directory /var/www/URL/app/cache> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/app/courses> |
|
|
|
<Directory /var/www/URL/app/courses> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/app/home> |
|
|
|
<Directory /var/www/URL/app/home> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/app/logs> |
|
|
|
<Directory /var/www/URL/app/logs> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/app/upload> |
|
|
|
<Directory /var/www/URL/app/upload> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/main/default_course_document/images> |
|
|
|
<Directory /var/www/URL/main/default_course_document/images> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/main/lang> |
|
|
|
<Directory /var/www/URL/main/lang> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
<Directory /var/www/URL/web/css> |
|
|
|
<Directory /var/www/URL/web/css> |
|
|
|
php_admin_value engine Off |
|
|
|
php_admin_value engine Off |
|
|
|
</Directory> |
|
|
|
</Directory> |
|
|
|
</pre> |
|
|
|
</pre> |
|
|
|
|
|
|
|
<br /> |
|
|
|
|
|
|
|
|
|
|
|
<hr /> |
|
|
|
<hr /> |
|
|
|
<h2><a name="6.HSTS">HTTP Headers Security</a></h2> |
|
|
|
<h2><a name="6.HSTS">HTTP Headers Security</a></h2> |
|
|
|
<p>A relatively recent development in web security, HTTP headers can be modified either |
|
|
|
<p>A relatively recent development in web security, HTTP headers can be modified either |
|
|
|
|