Äîêóìåíò âçÿò èç êýøà ïîèñêîâîé ìàøèíû. Àäðåñ îðèãèíàëüíîãî äîêóìåíòà : http://www.arcetri.astro.it/manual/ko/misc/security_tips.html
Äàòà èçìåíåíèÿ: Mon Jan 21 19:44:30 2013
Äàòà èíäåêñèðîâàíèÿ: Fri Feb 28 08:04:10 2014
Êîäèðîâêà: ISO8859-5

Ïîèñêîâûå ñëîâà: ï ï ï ï ï ï ï ï ï ï ï ï ï ï ð ï ð ï ð ï ð ï ð ï ð ï ð ï ð ï ð ï ð ï ð ï ð ï
ÊÈÎØ ÖÑ - Apache HTTP Server
<-
Apache > HTTP Server > Documentation > Version 2.2 > Miscellaneous Documentation

ÊÈÎØ ÖÑ

ÀÅÄÙ×á Î?Îþ:  en  |  ko  |  tr 

ÐÜ É?Ì-ÄÒ ÓæÍÕÖ× É?Ï?ÐÜ ÎÖÄåÄßÄé. ÓæÁéÏÅ Ê?ÀöÅØ ÃËÏûÐÊ ÏÅÎþ É?Ì-È? Ò?Àý×ßÌÌÏô.

Ð?Ì-É?È? ÏþÏÅ×âÆ? ÅÅÏ?ÐÜ ÅÙ ÊÈÎØ À?ÇÓ Ø?Ö?ÏÝ ÖÑÐÜÄé. ÎþÆ ÀÝÐÊ ÐßÉíÐ?ÐÜÀý, ÎþÆ ÀÝÐÊ ÎÖÖÔÔÅÏÅÈÈ ×èÄ÷×ßÄÒ ÀÝÐÜÄé.

top

ÓæÍÕÖ×ÐÈÇÞ Ð?Ñ?×ßÁò

ÎÖÖÔÔÅ Ð?Ì-É?ÄÒ ÎØÐ?À? ÊÈÎØ É?Ñ?ÏÅ À?ÍÙÐÜ ÈÉÐÊ ÀÃÉïÐê À?ÅÏÓÌÇÞ Ð?Èý×ßÄé. ÁçÇ?Ã? Õ?À× ÐëÀ× Éï×?ØÔ ÉïÀïÅ×ÄÒ É?Ñ?ÅùÐË ×××â Ì? Î?Äé. ÁçÇÅÌ- Ìâ×ÑÖ?Ï?ÎþÈ? ÓæÍÕÉ?Ð?ÐÈÇÞ Ð?Ñ?×ßÄÒ ÀÝÐÜ ÑïÏô×ßÄé. ÎÖÖÔÔÅÏÅÌ- Ñ?Ñ? Ð?Ì-É?È? ÄéÏþÇÞÅõ×ïÄéÈù, Ë?ÇÞÏþ É?Ð?À? ÊÈÎØ Î?Å?ÐÜÖ?È? ÎÛÇÑÑæÄÒ ÎÖÖÔÔÅ Ð?Ì-É? Éï×? ÈîÐßÈÅÈ?ÍÊÖ?È? ÁÈÅÆ×ßÁö À-ÇÒØ? Á××áÄé. ÎÖÖÔÔÅ Ìâ×ÑÖ?Ï?ÎþÈ? ÉøÖ?×ßÄÒ ÈÉÐÊ Ñ?ËÿÐêÅùÅÅ ÊåÍÑ×á Ì-ÊåÍÊÈ? Ñ?À?×áÄé.

ÉÀÇà Ð?Ì-É? ÔêÅõÆ?É?ÏÅ Ð?Ì-É?ÀÅ À?ÀíÐË Ä÷×ßÄÒ ÀöÏüÄÒ ÈÉÑ? ÎÚÄé. ÁçÊÈÄé ÓïÀÅ ÔêÅõ, CGI ÍÊÕ?ÈÃÖ?, ×ßÐ? ÏþÏÅÓÌÑ?Ð× É?Ñ?ÇÞ À?ÀíÐË Ä÷×ßÄÒ ÀöÏüÀÅ ÈÉÄé. ÁçÇ?É×ÇÞ ×çË? ÑæÐ××ßÈ÷ ÍÓÍÊÕëÐ× È?Å÷ Ìâ×ÑÖ?Ï?ÎþÈ? Î?Å?ÐÜÖ?×èÎï ×áÄé.

top

ServerRoot Å?ÇÊÕôÈ? Á××á

ÊÈÕû root Ë÷ÏûÐêÀÅ ÎÖÖÔÔÅÈ? ÍÓÐë×á ØÔ, ÏôÓËÐË Ì-ÊåÍÊ×ßÁòÐ?×è User Ñ?ÍÓÎþÇÞ Ñ?Ñ?×á Ë÷ÏûÐêÇÞ Ê?Ø?×áÄé. rootÀÅ Í××ð×ßÄÒ ÈýÇÙÎþÀÅ ÐæÄéÈù, root ÐÜÏìÐ× Ë÷ÏûÐêÀÅ Ì?Ñ?×ßÑ? È?×ßÅÅÇß ÑæÐ××èÎï ×áÄé. ÐÜ ÖÔÐßÅùÐË rootÈÈ ÎÅ Ì? ÐæÎþÎï ×ßÀý, Å?ÇÊÕôÈ?ÏÝ È?Å÷ Ë?Ð?Å?ÇÊÕôÈ?ÅÅ ÈÆÒ?ÀÅÑ?Äé. ÏÉÈ? ÅùÎþ, ServerRootÇÞ /usr/local/apacheÈ? Ë÷Ïû×áÄéÈù root Ë÷ÏûÐêÀÅ ÄéÐÍÀ? ÀÀÐÜ Å?ÇÊÕôÈ?È? ÈÈÅùÁö Ñ?ÎØ×áÄé:

mkdir /usr/local/apache
cd /usr/local/apache
mkdir bin conf logs
chown 0 . bin conf logs
chgrp 0 . bin conf logs
chmod 755 . bin conf logs

ÁçÇ?Èù /, /usr, /usr/local ÐÊ rootÈÈÐÜ Ì?Ñ?×â Ì? ÐæÄé. httpd Í××ðÖÔÐßÐË ÌÃÔÅ×âÆ? ÄéÐÍÀ? ÀÀÐÜ ÊÈØ?×èÎï ×áÄé:

cp httpd /usr/local/apache/bin
chown 0 /usr/local/apache/bin/httpd
chgrp 0 /usr/local/apache/bin/httpd
chmod 511 /usr/local/apache/bin/httpd

htdocs ×ßÐ?Å?ÇÊÕôÈ?ÄÒ ÄéÈ? Ë÷ÏûÐêÅùÐÜ Ì?Ñ?×â Ì? ÐæÅÅÇß ÈÈÅù Ì? ÐæÄé -- rootÄÒ ÁçÀ?ÏÅ ÐæÄÒ ÖÔÐßÐË Í××ð×ßÑ?ÅÅ, ÈÈÅùÑ?ÅÅ ÎÚÎÖÎï ×áÄé.

rootÀÅ ÎÖÄá Ë÷ÏûÐêÀÅ rootÀÅ Í××ð×ßÀÕÃ? ÎÂÁòÀÅÄÙ×á ÖÔÐßÐË Ì?Ñ?×â Ì? ÐæÄéÈù ÍÓÍÊÕëÐ× root Á××áÐË ØÙÔ? Ì? ÐæÄé. ÏÉÈ? ÅùÎþ, Ä?ÁÊÀÅ httpd Í××ðÖÔÐßÐË Ê?Àö×ßÏÄÄéÈù ÄéÐÍÉ? ÍÓÐë×âÆ? ÐãÐ×Ð× ÔêÅõÈ? Í××ð×ßÀä ÅØÄé. logs Å?ÇÊÕôÈ?ÀÅ (rootÀÅ ÎÖÄá Ë÷ÏûÐêÏÅÀä) ÎÂÁòÀÅÄÙ×ßÄéÈù Ä?ÁÊÀÅ ÇÞÁçÖÔÐßÐË ÄéÈ? ÍÓÍÊÕëÖÔÐßÇÞ ÍÙÊÌÈÅÕ?È? ÀÙÎþÌ- rootÀÅ ÖÔÐßÏÅ ÐãÐ×Ð× ÐêÇñÈ? Å?ÎþÎÅ Ì? ÐæÄé. ÇÞÁçÖÔÐßÐÜ (rootÀÅ ÎÖÄá Ë÷ÏûÐêÏÅÀä) ÎÂÁòÀÅÄÙ×ßÄéÈù Ä?ÁÊÀÅ ÇÞÁçÏÅ ÐÜË?×á ÐêÇñÈ? ÁòÇß×â Ì? ÐæÄé.

top

Server Side Includes

Server Side Includes (SSI)ÄÒ Ì-É? À?È?ÐêÏÅÀä ÊÈÎØË? ÈþÀÅÑ? ÐñÐ÷Ð?ÐÞ Ð?×øÐÜÄé.

ÓÉÉ?ÒÀ Ð?×øÐÊ Ì-É?Ð× ÊÞ×ßÈ? ÄÓÈ?ÄÒ ÑÅÐÜÄé. ÎÖÖÔÔÅÄÒ ÖÔÐßÏÅ SSI Ñ?ÍÓÎþÀÅ ÐæÄÒÑ? Ï?ÊÞÏÝ À?ÀøÎ?ÐÜ È?Å÷ SSI ÖÔÐßÐË ÊàÌ?×èÎï ×áÄé. ÑÆÁí ÊÞ×ßÀÅ ÄÓÑ?ÈÈ, Ì-É?È? Ï?Ç? Ë÷Æ?ÐÜ ÀÀÐÜ Ë÷Ïû×ßÄÒ Ø?ÀöÏÅÌ-ÄÒ ÍÙÀ?×â Ì? ÐæÄé.

Æ×, SSI ÖÔÐßÐÊ ÐßÉíÐ?ÐÞ CGI ÍÊÕ?ÈÃÖ?ÏÝ ÅÏÐß×á Ð?×øÐË ÀÅÑ?Äé. SSI ÖÔÐßÏÅÌ- "exec cmd"È? Ë÷Ïû×ßÈù httpd.confÏÅÌ- ÎÖÖÔÔÅÈ? Í××ð×ßÅÅÇß ÌÃÑ?×á Ë÷ÏûÐêÏÝ ÁçÇü Á××áÐÈÇÞ CGI ÍÊÕ?ÈÃÖ?Ã? ×ÑÇÞÁçÇ?ÐË Í××ð×â Ì? ÐæÄé.

ÐõÑÅÐË ØÀÏû×ßÈùÌ- SSI ÖÔÐßÐ× ÊÈÎØÐË ×òË?ÍÓÕÀÄÒ ÉöÉÐÜ ÐæÄé.

SSI ÖÔÐßÐÜ ÀÅÑ?ÏÓ Ì? ÐæÄÒ ×××èÈ? ÀíÈ?×ßÁòÐ?×è Ì-É?À?È?ÐêÄÒ ÐßÉíÐ?ÐÞ CGI ÐÏÅÌ- ÌÃÈý×ßÄÒ ÉöÉÐÈÇÞ suexecÈ? Ë÷Ïû×â Ì? ÐæÄé

.htmlÐÜÃ? .htm Ø?ÐõÐêÈ? SSI ÖÔÐßÇÞ Ë÷Ïû×ßÄÒ ÀÝÐÊ Ð?×ø×ßÄé. Ö?Ø? Ï?Ç? Ë÷Æ?ÐÜ À?Ð?×ßÀÕÃ? ÕûÍÕÇ?ÐÜ ÈÉÐÊ Ì-É? Ø?ÀöÏÅÌ- Ð?×ø×ßÄé. SSI ÖÔÐßÐÊ ÐßÉíÐ?ÐÈÇÞ ÈÉÐÜ Ë÷Ïû×ßÄÒ .shtml ÀÀÐÊ ÊÀÅÅÐ× Ø?ÐõÐêÈ? ÀÅÑ?Îï ×áÄé. ÁçÇ?Èù Ì-É? ÊÞ×ßÈ? ÓæÌâØ-×ßÀý Ð?×øÏôÌâÈ? ÍÁÀä À?È?×â Ì? ÐæÄé.

ÄéÈ? ÉöÉÐÊ SSI ÖôÐÜÑ?ÀÅ ÍÊÕ?ÈÃÖ?Ã? ×ÑÇÞÁçÇ?ÐË Í××ð×ßÑ? È?×ßÅÅÇß ÈÈÅõÄÒ ÀÝÐÜÄé. Options Ñ?ÍÓÎþÏÅÌ- Includes ÄûÍÕ IncludesNOEXECÈ? Ë÷Ïû×áÄé. ÁçÇÅÅÅ ÍÊÕ?ÈÃÖ?ÀÅ ScriptAlias Ñ?ÍÓÎþÇÞ Ñ?Ñ?×á Å?ÇÊÕôÈ?ÏÅ ÐæÄéÈù <--#include virtual="..." -->È? Ë÷Ïû×ßÏ? CGI ÍÊÕ?ÈÃÖ?È? Í××ð×â Ì? ÐæÐÍÐË ÑæÐ××ßÆ?.

top

ÐßÉíÐ?ÐÞ CGI

ÀñÁÉ Ä÷ÍÕÐÊ ×çË? CGI ÍÊÕ?ÈÃÖ?/×ÑÇÞÁçÇ?Ð× Ð?ÐêÈ? ÍÕÇê×èÎï ×ßÀý, ÀýÐ×À× Í×Ì?ÐÜÀ× CGIÐ× ÐñÐ÷Ð?ÐÞ ÊÈÎØË? ×óÑÅÐË ÉïÀï×â Ì? ÐæÎþÎï ×áÄé. ÁòÊËÐ?ÐÈÇÞ CGI ÍÊÕ?ÈÃÖ?ÄÒ Ð?Ì-É? Ë÷ÏûÐê Á××áÐÈÇÞ ÍÓÍÊÕëÏÅÌ- ÎþÆ ÈýÇÙÎþÆ?ÅÅ Í××ð×â Ì? ÐæÁòÆ?É?ÏÅ ÑæÐ×ÐæÀä Ø?ÐÞ×ßÑ? ÎÚÐÈÈù ÈÕÏü Ð?×ø×ßÄé.

È?Å÷ CGI ÍÊÕ?ÈÃÖ?ÀÅ ÀÀÐÊ Ë÷ÏûÐêÇÞ Í××ðÅ×ÁòÆ?É?ÏÅ ÄéÈ? ÍÊÕ?ÈÃÖ?ÏÝ (ÀýÐ×À× Í×Ì?ÐÜÀ×) ÓöÅÉ×â ÀÅÄÙÌÊÐÜ ÐæÄé. ÏÉÈ? ÅùÎþ, Ë÷ÏûÐê AÄÒ Ë÷ÏûÐê BÈ? ÈÕÏü ÍØÎþ×ßÏ?, Ë÷ÏûÐê BÐ× CGI Å?ÐÜÕÝÊ?ÐÜÍÊÈ? Ñ?Ï?É?È?ÄÒ ÍÊÕ?ÈÃÖ?È? ÐëÌÊ×â Ì? ÐæÄé. ÎÖÖÔÔÅ 1.2 É?Ð?ÊÞÕÝ Ö?×äÅ×Î?Àý ÎÖÖÔÔÅ Ì-É?ÏÅÌ- Ö?ÊÀ×á ØÕ(hook)ÐÈÇÞ ÅÏÐë×ßÄÒ suEXECÄÒ ÍÊÕ?ÈÃÖ?È? ÄéÈ? Ë÷ÏûÐêÇÞ Í××ð×ßÄÒ ÉöÉÑï ×ßÃ?Äé. ÄéÈ? ÄûÑïÐ?ÐÞ ÉöÉÏÅÄÒ CGIWrapÐÜ ÐæÄé.

top

ScriptAlias×ßÑ? ÎÚÐÊ CGI

ÄéÐÍ ÑÆÀ×ÐË ÈÈÑÇ×âÆ?ÈÈ Ë÷ÏûÐêÀÅ ÎþÆ Å?ÇÊÕôÈ?ÏÅÌ-Æ?ÅÅ CGI ÍÊÕ?ÈÃÖ?È? Í××ð×ßÅÅÇß ×óÏû×â Ì? ÐæÄé:

top

ScriptAlias×á CGI

Ö?Ñ? Å?ÇÊÕôÈ?ÏÅÌ-ÈÈ CGIÈ? Í××ð×â Ì? ÐæÅÅÇß Ñ?×á×ßÈù À?È?ÐêÄÒ ÐÜÅù Å?ÇÊÕôÈ?È? ÕûÑ?×â Ì? ÐæÄé. ÐÜ ÀöÏüÄÒ scriptalias×ßÑ? ÎÚÐÊ CGIÊÈÄé Ø?Í×Ø? ÎØÐ?×ßÄé. Äì, ÍÕÇê×ßÄÒ Ë÷ÏûÐêÈÈ Å?ÇÊÕôÈ?ÏÅ Ñ?Áé×â Ì? ÐæÀý, À?È?ÐêÀÅ Ë?ÇÞÏþ CGI ÍÊÕ?ÈÃÖ?/×ÑÇÞÁçÇ?Ð× ÐñÐ÷Ð?ÐÞ ÊÈÎØË? ×óÑÅÐË ÀÛË÷×â ÏûÐÜÀÅ ÐæÄéÈù.

ÄûÊÞÊàÐ× Ë÷ÐÜÖ?ÄÒ scriptalias×ßÑ? ÎÚÐÊ CGI ÉöÍÔ ÄûÍÕ ÐÜ ÉöÍÔÐË Ë÷Ïû×áÄé.

top

ÅÏÐ? ÃËÏûÐË ËÌÊ×ßÄÒ ÄéÈ? ÉöÉ

mod_php, mod_perl, mod_tcl, mod_python ÀÀÐÜ Ì-É?Ð× ÐßÊÞÇÞ ÅÏÐë×ßÄÒ ÐãÊ?Å?Åõ ÍÊÕ?ÈÃÖ?ÄÒ Ì-É?ÏÝ ÀÀÐÊ Ë÷ÏûÐêÇÞ (User Ñ?ÍÓÎþ Ò?Àý) Í××ðÅ×ÁòÆ?É?ÏÅ, ÍÊÕ?ÈÃÖ? Ï?Ñ?ÐÜ Í××ð×ßÄÒ ÍÊÕ?ÈÃÖ?ÄÒ ÐñÐ÷Ð?ÐÈÇÞ Ì-É? Ë÷ÏûÐêÀÅ Ñ?Áé×â Ì? ÐæÄÒ È?Å÷ ÀÝÏÅ Ñ?Áé×â Ì? ÐæÄé. ÎþÆ ÍÊÕ?ÈÃÖ? Ï?Ñ?ÐÊ ÎþÄÐÑ?ÅÅ Ñ?×áÐË ×ßÑ?ÈÈ, ÎØÐ?×ßÄéÀý ÀÅÑ?×ßÑ? ÎÚÄÒ ÀÝÐÜ ÑÑÄé.

top

ÍÓÍÊÕë ÌÃÑ? ÊÈØ?×ßÁò

Ñ?ÈËÇÞ ÎØÐ?×á Ì-É?È? ÏþÏÅ×ßÇÑÈù Ë÷ÏûÐêÀÅ .htaccess ÖÔÐßÐË Ë÷Ïû×ßÏ? Ä÷ÍÕÐÜ ÌÃÑ?×á ÊÈÎØÁòÄÙÐË Ê?Àö×ßÁö ÉéÆ?Ñ? ÎÚÐË ÀÝÐÜÄé. ÁçÇ?ÁòÐ?×è ÄéÐÍÀ? ÀÀÐÊ ÉöÉÐÜ ÐæÄé.

Ì-É? ÌÃÑ?ÖÔÐßÏÅ ÄéÐÍÐË ÓïÀÅ×áÄé

<Directory />
AllowOverride None
</Directory>

ÁçÇ?Èù Ë÷ÏûÀÅÄÙ×ßÅÅÇß ÈýÍÓÐ?ÐÈÇÞ ×óÏû×á Å?ÇÊÕôÈ?È? Ñ?Ïì×ßÀýÄÒ .htaccess ÖÔÐßÐË Ë÷Ïû×â Ì? Î?Äé.

top

ÁòÊËÐ?ÐÈÇÞ Ì-É?ÏÅ ÐæÄÒ ÖÔÐß ÊÈØ?×ßÁò

Ë÷Æ?ÅùÐÊ ÑÎÑÎ ÎÖÖÔÔÅÐ× ÁòÊË Ñ?ÁéÏÅ Äû×è ÐïÈ? ÎÛÀýÐæÄé. Ñÿ, Ì-É?ÀÅ ÐßÉíÐ?ÐÞ URL ÄûÐÐ ÁäÔ?ÐË Ë÷Ïû×ßÏ? ÖÔÐßÐË Ó?ÐË Ì? ÐæÄéÈù, Ö?ÊÀØ? ÑÆÔÅÈ? ×ßÑ? ÎÚÄÒ×á Õ?Æ?ÐÜÎ?Ö?ÏÅÀä ÖÔÐßÐÜ Ì-ÊåÍÊÅÙ Ì? ÐæÄé.

ÏÉÈ? ÅùÎþ, ÎÖÇÅÏÝ ÀÀÐÊ ÀöÏü:

# cd /; ln -s / public_html
http://localhost/~root/ ÏÅ Ñ?Áé×áÄé

ÁçÇ?Èù Õ?Æ?ÐÜÎ?Ö?ÄÒ Ð?ÓÌ ÖÔÐßÍÓÍÊÕëÐË ÅÉÎÖÄéÄâ Ì? ÐæÄé. ÐÜÈ? ÈÇÁòÐ?×è Ì-É?ÌÃÑ?ÏÅÌ- ÄéÐÍÀ? ÀÀÐÊ ÑÆÔÅÈ? ×áÄé:

<Directory />
Order Deny,Allow
Deny from all
</Directory>

ÁçÇ?Èù ÖÔÐßÍÓÍÊÕë Ð?ÔÅÏÅ Äû×è ÁòÊË Ñ?ÁéÐÜ ÀÕÊÞÅØÄé. Ï?×ßÄÒ ÏÅÏ?ÏÅ Ñ?Áé×â Ì? ÐæÅÅÇß ÄéÐÍÀ? ÀÀÐÊ Directory ÊýÇßÐË ÓïÀÅ×áÄé.

<Directory /usr/users/*/public_html>
Order Deny,Allow
Allow from all
</Directory>
<Directory /usr/local/httpd>
Order Deny,Allow
Allow from all
</Directory>

LocationÀ? Directory Ñ?ÍÓÎþÈ? ÀÀÐÜ Ë÷Ïû×ßÄÒ ÀöÏü Ö?ÊÀØ? ÑæÐ×È? ÁòÏÿÏ?Æ?. ÏÉÈ? ÅùÎþ, <Directory />ÀÅ Ñ?ÁéÐË ÀÕÊÞ×ßÄ?Æ?ÅÅ <Location /> Ñ?ÍÓÎþÀÅ ÐÜÈ? É?ÍÓ×â Ì? ÐæÄé

UserDir Ñ?ÍÓÎþÈ? Ë÷Ïû×ßÄÒ ÀöÏüÏÅÅÅ ÑæÐ××ßÆ?. Ñ?ÍÓÎþÈ? "./" ÀÀÐÜ ÌÃÑ?×ßÈù root Ë÷ÏûÐêÏÅ Äû×è ÉéÇÞ Ð?Ð× ÀöÏüÏÝ ÀÀÐÊ É?Ñ?ÀÅ ÉïË×áÄé. ÎÖÖÔÔÅ 1.3 ÐÜË?ÐË Ë÷Ïû×áÄéÈù Ì-É? ÌÃÑ?ÖÔÐßÏÅ ÎÖÇÅ ÑéÐË ÓïÀÅ×ßÁö À-ÇÒØ? Á××áÄé:

UserDir disabled root

top

ÇÞÁç ËüÖüÊÈÁò

Í×Ñ?ÇÞ Ì-É?ÏÅÌ- É?ÍÌ ÐßÐÜ ÐæÎþÃ?Àý ÐæÄÒÑ? ÎÛÇÑÈù ÇÞÁçÖÔÐßÐË ËüÖüÊÑÎï ×áÄé. ÇÞÁçÖÔÐßÐÊ ÐÜÉÜ ÐßÎþÃ- ÐßÈÈÐË ÊÈÀý×ßÑ?ÈÈ, Ì-É?ÏÅ ÎþÆ À?ÀíÐÜ ÐæÎ?ÄÒÑ? ÎÛÇÑÑæÀý ×?Ð÷ ×ÚÏô×á ÈÈÕ- ÎØÐ?×áÑ? Ø?ÐÞ×ßÀä ×èÑèÄé.

Ï?Ç?ÀÅÑ? ÏÉ:

grep -c "/jsp/source.jsp?/jsp/ /jsp/source.jsp??" access_log
grep "client denied" error_log | tail -n 10

ÓÉÉ?ÒÀ ÏÉÄÒ ÐïÈ?ÅØ Source.JSP ÏôÓËÐÈÇÞ Ì-É?Ñ?ÊÈÈ? ÎÛÎÖÃÎ Ì? ÐæÄÒ TomcatÐ× ÓûÎðÑÅÈ? ÐÜÏû×ßÇÑÄÒ À?Àí ØÍÌ?È? ÎÛÇÑÑæÀý, ÅÞÉ?ÒÀ ÏÉÄÒ Ñ?ÁéÐÜ ÀÕÊÞÅØ ÓæÁé Õ?Æ?ÐÜÎ?Ö? 10ÀÃÈ? ÄéÐÍÀ? ÀÀÐÜ ÊÈÏ?ÑèÄé:

[Thu Jul 11 17:18:39 2002] [error] [client foo.bar.com] client denied by server configuration: /usr/local/apache/htdocs/.htpasswd

Ðï ÎÛ ÅýÐÜ ÇÞÁçÖÔÐßÐÊ ÐÜÉÜ ÉïË×á Ë÷À×ÈÈÐË ÊÈÀý×áÄé. ÁçÇÅÌ- Õ?Æ?ÐÜÎ?Ö?ÀÅ .htpasswd ÖÔÐßÏÅ Ñ?Áé×â Ì? ÐæÎ?ÄéÈù Ñ?Áé ÇÞÁçÏÅ ÄéÐÍÀ? ÀÀÐÊ ÁòÇßÐÜ ÃÂÐË ÀÝÐÜÄé:

foo.bar.com - - [12/Jul/2002:01:59:13 +0200] "GET /.htpasswd HTTP/1.1"

Ñÿ, Ä÷ÍÕÐÊ Ì-É? ÌÃÑ?ÖÔÐßÏÅÌ- ÄéÐÍ ÊÞÊàÐË ÑæÌ?ÓÃÈ?×ïÐË ÀÝÐÜÄé:

<Files ~ "^\.ht">
Order allow,deny
Deny from all
<Files>

ÀÅÄÙ×á Î?Îþ:  en  |  ko  |  tr 

top

Comments

Notice:
This is not a Q&A section. Comments placed here should be pointed towards suggestions on improving the documentation or server, and may be removed again by our moderators if they are either implemented or considered invalid/off-topic. Questions on how to manage the Apache HTTP Server should be directed at either our IRC channel, #httpd, on Freenode, or sent to our mailing lists.