Merge pull request #1482 from boumanb/master

Added correct direct access prevention syntax on sensitive files for Apache 2.4
This commit is contained in:
Denis Duliçi
2020-06-17 11:23:30 +03:00
committed by GitHub

View File

@@ -13,8 +13,15 @@
# Prevent Direct Access to Protected Files # Prevent Direct Access to Protected Files
<FilesMatch "(?i)(^artisan$|\.env|\.log)"> <FilesMatch "(?i)(^artisan$|\.env|\.log)">
# Apache 2.2 syntax
<IfModule !mod_authz_core.c>
Order deny,allow Order deny,allow
Deny from all Deny from all
</IfModule>
# Apache 2.4 syntax
<IfModule mod_authz_core.c>
Require all denied
</IfModule>
</FilesMatch> </FilesMatch>
# Prevent Direct Access To Protected Folders # Prevent Direct Access To Protected Folders