Solved

How do i can apply security on  LINUX directory so that the users cannot consent to the code of my web application in the APACHE server?

Posted on 2004-04-15
6
238 Views
Last Modified: 2010-04-22
I have a LINUX - APACHE  application and i need apply security to not allow the access to the code or root directory of my web application.  Now I have a URL: www.aaa.gov.org/bbb/ccc.html
How Can I set this URL as:
  www.aaa.gov.org

and with its security
0
Comment
Question by:jlguerra
6 Comments
 
LVL 17

Accepted Solution

by:
owensleftfoot earned 43 total points
ID: 10837745
You need to edit the DocumentRoot directive in /etc/httpd.conf
0
 
LVL 10

Assisted Solution

by:Mercantilum
Mercantilum earned 41 total points
ID: 10848641
* In order to prevent a directory listing, either

1. create a index.html file in the root of your web server documents (and/or subdirs)
touch index.html

2. modify httpd.conf  and in
<Directory your-docs-path>
 Options +Indexes ....
 ....
</Directory>

Ensure +Indexes is  -Indexes
 Options -Indexes ....


* Regarding the www.aaa.gov.org/bbb/ccc.html =>  www.aaa.gov.org

1. www.aaa.gov.org is not a VH

Ensure your DocumentRoot in httpd.conf is something like
DocumentRoot  /myserverdir/asubdir/bbb
If you want ccc.html to be read as default :
either rename ccc.html as index.html or (without changing the default in httpd.conf, cleaner:) make a link in this dir to index.html
ln -s ccc.html index.html

2. www.aaa.gov.org is a virtualhost

Ensure your VH content is like
<VirtualHost *>
DocumentRoot /myserverdir/asubdir/bbb
ServerName www.aaa.gov.org
</VirtualHost>
0
 
LVL 51

Assisted Solution

by:ahoffmann
ahoffmann earned 41 total points
ID: 10852270
in your httpd.conf sett at least following
  DocumentRoot /path/to/bbb
  <Directory />
    Options None
    AllowOverride None
  </Directory>
  <Directory "/path/to/bbb">
    DirectoryIndex index.html
  </Directory>

If you need more security, you need to provide more details
0

Featured Post

U.S. Department of Agriculture and Acronis Access

With the new era of mobile computing, smartphones and tablets, wireless communications and cloud services, the USDA sought to take advantage of a mobilized workforce and the blurring lines between personal and corporate computing resources.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

​Being a Managed Services Provider (MSP) has presented you  with challenges in the past— and by meeting those challenges you’ve reaped the rewards of success.  In 2014, challenges and rewards remain; but as the Internet and business environment evol…
Hello EE, Today we will learn how to send all your network traffic through Tor which is useful to get around censorship and being tracked all together to a certain degree. This article assumes you will be using Linux, have a minimal knowledge of …
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This video shows how to quickly and easily add an email signature for all users on Exchange 2016. The resulting signature is applied on a server level by Exchange Online. The email signature template has been downloaded from: www.mail-signatures…

778 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question