Home Man
Search
Today's Posts
Register

Red Hat is the world's leading open source technology solutions provider with offerings including Red Hat Enterprise Linux (RHEL), Fedora, open source applications, security and systems management, virtualization, and Services Oriented Architecture (SOA) solutions.

How to block some key words in my url for apache config?

👤 Login to reply

 
Thread Tools Search this Thread
# 1  
Old 03-28-2018
Lightbulb How to block some key words in my url for apache config?

Hi Folks,

I am running a website and that needs to be tightened with security in terms of hacking... Whereas, In my URL, when i click on certain links the entire link as contains some words like below:
Code:
/control_panel
/controlpanel
/admin
/cms

Whereas, i need to block those words in apache config file, which can only be access internally. Let me know how to achieve this ..

-Siva

Last edited by rbatte1; 03-29-2018 at 05:27 AM..
# 2  
Old 04-22-2018
In general doing this manually would be folly but I know at least that there are efforts at blocking all "bad" bots (bots with recognisable user agents)

One example is: Apache Ultimate Bad Bot Blocker (find on github).

It uses BrowserMatchNoCase or similar to match user agents and put them in a list (set an environment variable for it) which then, as a whole, is denied.

There's little point in blocking known URLs your server doesn't have, as opposed to the bots that try to access the ones you *do* have.

So blocking the URLs is pointless (ineffective if you don't have them, and disruptive if you do have them), you will have to block the activity itself.

Many bots (most bots) do not actually identify as a common user agent, even the hacker-type bots will just use something recognisable.

Alternatively, when a known URL gets hit that requires password authentication fail2ban is often employed to block individual IPs.

Last edited by dryden; 04-22-2018 at 07:38 AM.. Reason: Automatic merging not acceptable
👤 Login to reply

« Previous Thread | Next Thread »
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
Config xcache apache mnnn Web Programming 0 07-10-2016 02:43 PM
Search and comment block of text from apache httpd.conf kchinnam Shell Programming and Scripting 3 06-05-2015 01:27 PM
Apache virtual host config vs global config problem freebird8z Red Hat 1 04-05-2013 10:33 AM
Apache vhosts config RewriteCond to ignore part of URL crmpicco Web Programming 3 09-24-2012 01:07 PM
Apache Web Server Config Hari_Ganesh Web Programming 0 07-08-2010 05:05 AM
sed command to parse Apache config file jy2k7ca Shell Programming and Scripting 7 12-04-2009 11:25 AM
bash script editing my apache config files jzacsh Web Programming 2 07-05-2009 10:48 PM
Apache config issue BrewDudeBob Solaris 17 04-04-2008 07:12 PM
Apache Config l008com UNIX for Dummies Questions & Answers 2 07-23-2002 05:54 PM
Apache Config Files Webwitch UNIX for Dummies Questions & Answers 1 08-01-2001 03:35 PM


All times are GMT -4. The time now is 03:39 AM.

Unix & Linux Forums Content Copyrightę1993-2018. All Rights Reserved.
UNIX.COM Login
Username:
Password:  
Show Password