【CentOS 7架构13】,访问控制Directory#171226

hellopasswd


访问控制——Directory

  • 核心配置文件内容 <Directory /data/wwwroot/www.111.com/admin/> Order deny,allow Deny from all Allow from 127.0.0.1 </Directory>
  • curl测试状态为403则被限制访问了
     41 #       require valid-user
     42 #    </FilesMatch>
     43 #    </Directory>
     44     <Directory /data/wwwroot/111.com/admin/>
     45         Order deny,allow
     46         Deny from allow
     47         Allow from 127.0.0.1
     48     </Directory>
     49 
     50     <Directory /data/wwwwroot/111.com>
     51         SetEnvIfNoCase Referer "http://111.com" local_ref
     52         SetEnvIfNoCase Referer "http://abc.com" local_ref
     53         SetEnvIfNoCase Referer "http://ask.apelearn.com/question/17394" local_ref
     54         SetEnvIfNoCase Referer "^$" local_ref
     55         <FilesMatch "\.(txt|doc|mp3|zip|rar|jpg|gif|png)">
     56                 Order Allow,Deny

[root@localhost ~]# /usr/local/apache2.4/bin/apachectl -t
Syntax OK
[root@localhost ~]# /usr/local/apache2.4/bin/apachectl graceful

[root@localhost ~]# mkdir /data/wwwroot/111.com/admin
[root@localhost ~]# echo "1111" > /data/wwwroot/111.com/admin/index.php
[root@localhost ~]# curl -x 127.0.0.1:80 111.com/admin/index.php -I
HTTP/1.1 200 OK
Date: Sun, 05 Nov 2017 08:13:24 GMT
Server: Apache/2.4.29 (Unix) PHP/5.6.30
X-Powered-By: PHP/5.6.30
Content-Type: text/html; charset=UTF-8

[root@localhost ~]# curl -x 127.0.0.1:80 111.com/admin/index.php
1111

[root@localhost ~]# tail /usr/local/apache2.4/logs/111.com-access_20171105.log 
192.168.9.1 - - [05/Nov/2017:14:59:03 +0800] "GET /favicon.ico HTTP/1.1" 404 209 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.101 Safari/537.36"
192.168.9.1 - - [05/Nov/2017:14:59:03 +0800] "GET /1111.pn HTTP/1.1" 404 205 "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)"
192.168.9.1 - - [05/Nov/2017:15:41:00 +0800] "GET /user.php HTTP/1.1" 200 10 "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)"
192.168.9.1 - - [05/Nov/2017:15:42:41 +0800] "GET /user.php HTTP/1.1" 200 10 "http://ask.apelearn.com/question/17394" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)"
127.0.0.1 - - [05/Nov/2017:16:13:24 +0800] "HEAD HTTP://111.com/admin/index.php HTTP/1.1" 200 - "-" "curl/7.29.0"
127.0.0.1 - - [05/Nov/2017:16:23:39 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0"
192.168.9.134 - - [05/Nov/2017:16:25:02 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0"
192.168.9.134 - - [05/Nov/2017:16:25:47 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0"
192.168.9.134 - - [05/Nov/2017:16:26:19 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0"


Windows访问浏览器为403


修改与171226

转载于:https://my.oschina.net/hellopasswd/blog/1594859

  • 0
    点赞
  • 0
    收藏
    觉得还不错? 一键收藏
  • 0
    评论
评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值