Skip to content

Commit 961826a

Browse files
committed
chore(main): release 5.0.2 (#60) (fix: issue #59)
1 parent b4ae008 commit 961826a

File tree

2 files changed

+9
-9
lines changed

2 files changed

+9
-9
lines changed

CHANGELOG.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2,6 +2,10 @@
22

33
All notable changes to this project will be documented in this file.
44

5+
## [5.0.2] - 2024-02-23
6+
7+
Tightened Apache directory permissions to deny access to dotfiles and system directories. This also fixes #59.
8+
59
## [5.0.1] - 2024-02-16
610

711
We have made some minor improvements to the content of debug messages and variable naming.

src/php/with-apache/rootfs/etc/apache2/apache2.conf

Lines changed: 5 additions & 9 deletions
Original file line numberDiff line numberDiff line change
@@ -167,17 +167,13 @@ Timeout 60
167167
</Directory>
168168

169169
# Security settings
170-
<FilesMatch "\.(ht.*|ini|log|sh|c)$">
171-
Require all denied
170+
<FilesMatch "^\.(ht|config|ssh|pem|key|pass|ini|log|sh|c)$">
171+
Redirect 404 /
172172
</FilesMatch>
173173

174-
<DirectoryMatch "/\.(?!well-known)">
175-
Require all denied
176-
</DirectoryMatch>
177-
178-
<FilesMatch "/\.(?!well-known)">
179-
Require all denied
180-
</FilesMatch>
174+
<LocationMatch "(^|/)\.(?!well-known)">
175+
Redirect 404 /
176+
</LocationMatch>
181177

182178
# Set basic settings for document root
183179
<Directory ${APP_PATH}>

0 commit comments

Comments
 (0)