diff options
author | Marc Alexander <admin@m-a-styles.de> | 2017-07-16 10:59:48 +0200 |
---|---|---|
committer | Marc Alexander <admin@m-a-styles.de> | 2017-07-16 10:59:48 +0200 |
commit | c99820eb6b13e928fdc2138840e0ec77cd4fe6c9 (patch) | |
tree | 6b97c4a1adb49e0d03751e1b9ec6b7ad2ed0d3ac /phpBB/docs/nginx.sample.conf | |
parent | 0ec5e2197908d69bfa18a0e257131e967cd96ec4 (diff) | |
parent | 1dea4625d0f958787c6357bef84a6d7a5453fe5f (diff) | |
download | forums-c99820eb6b13e928fdc2138840e0ec77cd4fe6c9.tar forums-c99820eb6b13e928fdc2138840e0ec77cd4fe6c9.tar.gz forums-c99820eb6b13e928fdc2138840e0ec77cd4fe6c9.tar.bz2 forums-c99820eb6b13e928fdc2138840e0ec77cd4fe6c9.tar.xz forums-c99820eb6b13e928fdc2138840e0ec77cd4fe6c9.zip |
Merge pull request #29 from phpbb/ticket/security-181
[ticket/security-181] Harden protection of migrations files and other directories
Diffstat (limited to 'phpBB/docs/nginx.sample.conf')
-rw-r--r-- | phpBB/docs/nginx.sample.conf | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/phpBB/docs/nginx.sample.conf b/phpBB/docs/nginx.sample.conf index 2ead3552fd..bf33f4e73d 100644 --- a/phpBB/docs/nginx.sample.conf +++ b/phpBB/docs/nginx.sample.conf @@ -72,7 +72,7 @@ http { } # Deny access to internal phpbb files. - location ~ /(config\.php|common\.php|includes|cache|files|store|images/avatars/upload) { + location ~ /(config\.php|common\.php|cache|files|images/avatars/upload|includes|phpbb|store|vendor) { deny all; # deny was ignored before 0.8.40 for connections over IPv6. # Use internal directive to prohibit access on older versions. |