2012年7月26日 星期四

FreeBSD中讓apache不顯示版本

修改 /usr/local/etc/apache22/extra/httpd-default.conf
本來
ServerTokens Full
ServerSignature On
改為
ServerTokens Prod
ServerSignature Off


測試
測試方式  telnet 192.168.1.1 80
輸入 HEAD / HTTP/1.0

HTTP/1.1 200 OK
Date: Thu, 26 Jul 2033 03:58:45 GMT
Server: Apache/2.2.22 (FreeBSD) mod_ssl/2.2.22 OpenSSL/1.0.1a DAV/2
Last-Modified: Fri, 18 Jul 2003 06:52:30 GMT
ETag: "621cea-182-3c2b5d5162780"
Accept-Ranges: bytes
Content-Length: 386
Connection: close
Content-Type: text/html

隱藏版本後
HTTP/1.1 200 OK
Date: Thu, 26 Jul 2033 04:20:26 GMT
Server: Apache
Last-Modified: Fri, 18 Jul 2003 06:52:30 GMT
ETag: "621cea-182-3c2b5d5162780"
Accept-Ranges: bytes
Content-Length: 386
Connection: close
Content-Type: text/html

沒有留言:

張貼留言