Apache Web Server ¾ÈÀüÀ» °³·®ÇϽʽÿÀ: ¿ìµÎ¸Ó¸®¸¦ ¹«´ÉÇÏ°Ô ÇÏ´Â »ç¿ë ServerTokens¿Í ServerSignature

¾ÆÆÄÄ¡ HTTPD À¥ ¼­¹ö°¡ ¾î¶² À¥ ÆäÀÌÁö ¶Ç´Â °ú½Ç ÆäÀÌÁöµçÁö »ý¼ºÇÒ ¶§, ¹öÀü¿¡ °üÇÏ¿© ¾à°£ Áß¿äÇÑ Á¤º¸ ¹× ü°è¿¡ ½ÇÇàµÈ ´Ù¸¥ ¼¼ºÎ»çÇ×Àº Åä·ý À¥»çÀÌÆ® ¼­¹ö ¿ìµÎ¸Ó¸®¿¡¼­ Ç¥½ÃµÈ´Ù. ¿¹¸¦ µé¸é, Á¤º¸ ¿øº»Àº ÀÌ°Í °°ÀÌ ÀÏÁöµµ ¸ð¸¥´Ù:

¼­¹ö: Apache/1.3.37 (À¯´Ð½º) mod_auth_passthrough/1.8 mod_log_bytes/1.2 mod_bwlimited/1.4 Áß¿äÇÑ 5.0.2.26 35.SR1.2 mod_ssl/2.8.28 OpenSSL/0.9.7a PHP-CGI/0.1b

¼­¹ö: xx.xx.xx.xx Ç×±¸ 80¿¡ Apache/2.0.53 (Ubuntu) PHP/4.3.10-10ubuntu4 ¼­¹ö


±â°è¿¡ ÀÌ¿ëµÈ ¾ÆÆÄÄ¡ ¸®´ª½º ¿î¿µ ü°è ¹× ¼ÒÇÁÆ®¿þ¾î¿¡ °üÇÏ¿© ¼­¹ö ¿ìµÎ¸Ó¸® Æø·Î Áß¿äÇÑ ¹öÀü ±×¸®°í ÀÌü Á¤º¸¿¡ ÀÖ´Â ¼±Àº, °£Á¢ÀûÀ¸·Î ÇØÄ¿¿¡°Ô Á¸ÀçµÇ´Â °¡´ÉÇÑ ¾ÈÀü ±¸¸ÛÀ» µå·¯³»°í, ¶Ç´Â Àû¾îµµ ¾ÇÀÇ ÀÖ´Â °ø°Ý±â¸¦ À¯È¿ÇÑ °ø°Ý Á¡À» À§ÇÑ ´ç½ÅÀÇ Ã¼°è¸¦ È®ÀÎÇÏ°Ô ½±°Ô ÇÑ´Ù.

¾ÆÆÄÄ¡°¡ Àüü ¼¼°è¿¡ HTTP À¥ ¼­¹ö ÀÌ ¸Þ½ÃÁö¸¦ °øÁßÀ¸·Î ¹æ¼ÛÇÏÁö ¾ÊÀ¸¸ç °¡´ÉÇÑ ¾Èº¸ ¹®Á¦¸¦ °íÄ¡Áö ¾Ê´Â´Ù´Â °ÍÀ» È®ÀÎÇϱâ À§ÇÏ¿©´Â, ÀÌ 2°³ÀÇ Áö½Ã¸¦ º¯°æÇϽʽÿÀ ServerTokes ±×¸®°í ServerSignature httpd.conf ±¸¼º ÆÄÀÏ¿¡¼­.

  1. »Ñ¸® »ç¿ëÀÚ·Î ·Î±×ÀÎÇϰųª À¥ ¼­¹ö¿¡ sudo¸¦ ½ÇÇàÇϽʽÿÀ.
  2. viÀÇ ¶Ç´Â ´Ù¸¥ ¹®¼­ ÆíÁý±â¸¦ °¡Áø httpd.conf ¶Ç´Â apache2.conf¸¦ (¾ÆÆÄÄ¡ 2¿¡¼­) ¿­°í ÆíÁýÇϽʽÿÀ. ÀϹÝÀûÀ¸·Î (À¯´Ð½º°¡ ´ç½Å »ç¿ëÇϰí ÀÖ´Â Apache1.3¸¦ À§ÇØ) /etc/httpd/conf/¿¡¼­ ¶Ç´Â /etc/apache2/ ¶Ç´Â /etc/apache/ ÀÖ´Â ¾ÆÆÄÄ¡ À±°û.
  3. ¼±À»À» °¡Áø ã¾Æ³»½Ê½Ã¿À ServerTokens. ´ç½ÅÀº ŸÀÚ¸¦ Ä¡´Â "/ServerTokes"¿¡ ÀÇÇØ ¼ö»öÀ» ½ÇÇàÇÒ ¼ö ÀÖ°í ¸íÁßÀº µé¾î°£´Ù.
  4. ¾ÆÆÄÄ¡ 1.3¿¡¼­´Â, ´ç½ÅÀº ¾Æ¸¶ ¼± ½ÃÀÛÀ»À» °¡Áø º¼ °ÍÀÌ´Ù ÃæºÐÈ÷ #ServerTokes ÀÌ °æ¿ì¿¡´Â, # Ư¼º Á¦°ÅÇϰųª »èÁ¦ÇϽʽÿÀ (d ¿­¼è¸¦ ´­·¯¼­). ¼±ÀÌ µÈ´Ù ±×·¡¾ß, ¶ÇÇÑ Â±â (´Ù¼ö Ư¼ºÀ» ´ëüÇϱâ À§ÇÏ¿© 1°³ÀÇ Æ¯¼ºÀ» ´ëüÇÏ´Â ¾Ð¹Ú r ¿­¼è µÇ±â À§ÇÏ¿© °¡µæ Â÷ÀÖ´Â °Í, ¶Ç´Â R)°¡ º¯°æÇϽʽÿÀ ServerTokens Â±â. ¾ÆÆÄÄ¡ 2.0 ¶Ç´Â 2.2¿¡¼­´Â, ¼±Àº ÀϹÝÀûÀ¸·Î Á¸ÀçÇÏÁö ¾Ê´Â´Ù. ÀÌ·¸°Ô ¼ö»öÀº ½ÇÆÐÇÒ °ÍÀÌ´Ù. ÀÌ °æ¿ì¿¡´Â, ¼³Á¤ ÆÄÀÏÀÇ ¹Ù´Ú¿¡ °¡°í, µÚ¿¡ ¿À´Â ¿øº»À» °¡Áø »õ·Î¿î ±¸°£À» Ãß°¡ÇϽʽÿÀ. ´ç½ÅÀº o ¿­¼è¸¦ ´­·¯¼­ »õ·Î¿î ±¸°£À» Ãß°¡ÇÒ ¼ö ÀÖ´Ù.

    ServerTokens Â±â

  5. ´ÙÀ½, ServerSignature¸¦ À§ÇÑ ¼ö»ö. Apache13¿¡¼­´Â, ¼±Àº ServerTokensÀÇ ¼±ÀÇ À§ ´Ù¸¸ ÀÏ °ÍÀδÙ. ÀÌ°Í °°ÀÌ º»´Ù ±×·¡¾ß ÀÌ¹Ì ÀÌ ¼±ÀÌ ¾ø´Â Apache2¿¡´Â¿¡¼­ ¼±À», ¾ÈÀ¸·Î Ãß°¡ÇÑ´Ù »õ°Í¿¡ ÆíÁýÇϰŵç.

    ¶³¾îÁ® ServerSignature

  6. Áö±ÝÂëÀº ÀÌ¹Ì ¾ÆÆÄÄ¡ ±¸¼º ÆÄÀÏ¿¡´Â ÀÌ ¾Æ·¡¿¡·Î ³õÀÎ 2°³ÀÇ Áö½Ã°¡ ÀÖ¾î¾ß ÇÑ´Ù:

    ¶³¾îÁ® ServerSignature
    ServerTokens Â±â

    The first line ¡°ServerSignature Off¡± instructs Apache not to display a trailing footer line under server-generated documents (error messages, mod_proxy ftp directory listings, mod_info output, and etc) which displays server version number, ServerName of the serving virtual host, email setting, and creates a ¡°mailto:¡± reference to the ServerAdmin of the referenced document.

    The second line ¡°ServerTokens Prod¡± configures Apache to return only Apache as product in the server response header on very page request, suppressing OS, major and minor version info.

  7. Save and close the config file by pressing Shift-Colon, and then type wq keys, and hit Enter.
  8. Restart Apache. Typical command is service httpd restart or /etc/init.d/apache2 restart.
  9. Now, you will get only the Apache in the server response header:

    Server: Apache

IMPORTANT: This is a machine translated page which is provided "as is" without warranty. Machine translation may be difficult to understand. Please refer to original English article whenever possible.

Share and contribute or get technical support and help at My Digital Life Forums.



Leave a Reply

You can use these tags: <a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

Subscribe without commenting


Custom Search

New Articles

Incoming Search Terms for the Article

servertokens - apache ServerTokens - servertokens prod - servertokens apache - apache ServerSignature - apache remove server header - apache server signature - apache servertoken - apache2 ServerToken - ServerTokens - serversignature - apache server tokens - custom serversignature apache - ServerTokens prod apache2 - apache2 ServerTokens - remove apache header - Apache turn off server signature - ServerSignature ServerTokens - disable server header - apache disable headers - apache 2.2 serversignature - apache disable server header - remove apache footer - ServerSignature Off - cpanel servertokens - turn off ServerTokens - turn off server signature - PROD Apache2 - servertokens httpd.conf - apache2 disable server info - apache modify server header - apache serversignature custom - apache disable server info - httpd.conf ServerTokens Prod - httpd.conf ServerTokens - ServerTokens custom - apache ServerTokens ServerSignature - apache2 serversignature - cpanel ServerSignature lost - security ServerSignature - apache 2.0 disable server header - apache ServerTokens Off - remove apache server header - apache server header - remove Server header - Apache2 ServerTokens Prod - apache remove header - all - apache change server signature - improve apache 1.3 response -