Howto Secure Apache
- Use the latest and most current version. Right now the latest is the Apache 2.2 series
- Make sure you’ve installed all the latest security patches
- Hide the Apache Version number, and other sensitive information
- Make sure apache is running under its own user account and group
- Ensure that files outside the web root are not served
- Turn off directory browsing (mod_autoindex)
- Turn off server side includes (SSI)
- Turn off CGI execution
- Don’t allow apache to use symbolic links
- Turning off multiple Options
- Turn off support for .htaccess files
- Use the Apache mod_security
- Disable all unnecessary modules
- Make sure only root has read access to apache’s config and binaries
- Lower the Timeout value
- Limiting large requests
- Limiting Concurrency
- Restricting Access by IP
- Adjusting KeepAlive settings
- Run Apache in a Chroot environment
Feel free to post suggestions or corrections
Related posts:
- .htaccess Generator
- Howto Recover a Linux Root Password
- Howto PHP / Java bridge on Debian
- Howto Upgrade Joomla
- Xen Howto: Install Windows
- Apache gained 1.09% market share in October
- Howto Create Generate a Certificate Signing Request
- Xorg 7.3 and 3D Acceleration with Nvidia Cards
- Howto Create a libstdc++ Compat on Debian (e.g. libstdc++-libc6.2-2.so.3)
- Varnish : Simple and Fast HTTP Acceleration
Popular Related Items »
Incoming search terms
- securing apache 2 2
- secure apache 2 2
- secure apache ubuntu
- chroot apache2 lenny
- ubuntu secure apache
- securing apache ubuntu
- howto secure apache
- how to secure apache
- secure apache2
- apache chroot ubuntu
- secure apache2 ubuntu
- ubuntu secure apache2
- secure apache debian
- how to secure apache 2 2
- secure apache http ubuntu
- ubuntu apache chroot
- apache chroot lenny
- lenny apache2 chroot
- debian securing apache
- secure apache2 debian
- debian apache2 chroot
- secure debian lenny
- debian lenny apache chroot
- apache secure
- securing apache windows
- fedora securing apache
- debian secure apache2
- apache chroot debian
- apache2 chroot lenny
- securing apache2 ubuntu
- secure apache fedora
- securing apache on ubuntu
- secure apache
- ubuntu apache directory browsing
- debian secure apache
- securing apache on debian
- securing apache2
- ubuntu jail apache
- secure apache lenny
- secure apache on windows
- chroot ubuntu apache
- debian apache secure
- turn off directory browsing ubuntu
- fedora apache secure
- secure apache xp
