[BlueOnyx:25294] Disable the /icons directory server wide

Richard Morgan richard at morgan-web.co.uk
Tue Jan 11 19:46:04 -05 2022


Hello

 

There appears to be a directory /icons available from all sites. For
example: https://www.blueonyx.it/icons/

 

A security review of our applications showed it as a medium risk. I was
wondering, what is the correct way to remove this? 

I've added an empty index.html to /usr/share/httpd/icons but that doesn't
feel correct. Any idea if these are even necessary? They could be disabled
in /etc/conf.d

 

Server: build 20210202 for a 5209R in en_US

 

Thanks, Richard

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mail.blueonyx.it/pipermail/blueonyx/attachments/20220112/be4572ca/attachment.html>


More information about the Blueonyx mailing list