From: <abe...@us...> - 2013-11-18 23:00:05
|
Revision: 6286 http://sourceforge.net/p/astlinux/code/6286 Author: abelbeck Date: 2013-11-18 23:00:00 +0000 (Mon, 18 Nov 2013) Log Message: ----------- lighttpd, restrict proxy's auth, /admin/cli/ to only user 'admin', and /admin/netstat/ to only 'admin' and 'staff' within lighttpd since the proxy's can be accessed outside of PHP's auth Modified Paths: -------------- branches/1.0/package/lighttpd/lighttpd.conf Modified: branches/1.0/package/lighttpd/lighttpd.conf =================================================================== --- branches/1.0/package/lighttpd/lighttpd.conf 2013-11-18 18:15:12 UTC (rev 6285) +++ branches/1.0/package/lighttpd/lighttpd.conf 2013-11-18 23:00:00 UTC (rev 6286) @@ -122,10 +122,22 @@ auth.backend = "htpasswd" auth.backend.htpasswd.userfile = "/var/www/admin/.htpasswd" -auth.require = ( "/admin" => +auth.require = ( "/admin/cli/" => ( "method" => "basic", "realm" => "admin", + "require" => "user=admin" + ), + "/admin/netstat/" => + ( + "method" => "basic", + "realm" => "admin", + "require" => "user=admin|user=staff" + ), + "/admin" => + ( + "method" => "basic", + "realm" => "admin", "require" => "valid-user" ) ) This was sent by the SourceForge.net collaborative development platform, the world's largest Open Source development site. |