shallow丿ovephp
41 # require valid-user 42 # </FilesMatch> 43 # </Directory> 44 <Directory /data/wwwroot/111.com/admin/> 45 Order deny,allow 46 Deny from allow 47 Allow from 127.0.0.1 48 </Directory> 49 50 <Directory /data/wwwwroot/111.com> 51 SetEnvIfNoCase Referer "http://111.com" local_ref 52 SetEnvIfNoCase Referer "http://abc.com" local_ref 53 SetEnvIfNoCase Referer "http://ask.apelearn.com/question/17394" local_ref 54 SetEnvIfNoCase Referer "^$" local_ref 55 <FilesMatch "\.(txt|doc|mp3|zip|rar|jpg|gif|png)"> 56 Order Allow,Deny
[root@localhost ~]# /usr/local/apache2.4/bin/apachectl -t Syntax OK [root@localhost ~]# /usr/local/apache2.4/bin/apachectl graceful [root@localhost ~]# mkdir /data/wwwroot/111.com/admin [root@localhost ~]# echo "1111" > /data/wwwroot/111.com/admin/index.php [root@localhost ~]# curl -x 127.0.0.1:80 111.com/admin/index.php -I HTTP/1.1 200 OK Date: Sun, 05 Nov 2017 08:13:24 GMT Server: Apache/2.4.29 (Unix) PHP/5.6.30 X-Powered-By: PHP/5.6.30 Content-Type: text/html; charset=UTF-8 [root@localhost ~]# curl -x 127.0.0.1:80 111.com/admin/index.php 1111
[root@localhost ~]# tail /usr/local/apache2.4/logs/111.com-access_20171105.log 192.168.9.1 - - [05/Nov/2017:14:59:03 +0800] "GET /favicon.ico HTTP/1.1" 404 209 "-" "Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/45.0.2454.101 Safari/537.36" 192.168.9.1 - - [05/Nov/2017:14:59:03 +0800] "GET /1111.pn HTTP/1.1" 404 205 "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)" 192.168.9.1 - - [05/Nov/2017:15:41:00 +0800] "GET /user.php HTTP/1.1" 200 10 "-" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)" 192.168.9.1 - - [05/Nov/2017:15:42:41 +0800] "GET /user.php HTTP/1.1" 200 10 "http://ask.apelearn.com/question/17394" "Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 10.0; WOW64; Trident/7.0; .NET4.0C; .NET4.0E; .NET CLR 2.0.50727; .NET CLR 3.0.30729; .NET CLR 3.5.30729)" 127.0.0.1 - - [05/Nov/2017:16:13:24 +0800] "HEAD HTTP://111.com/admin/index.php HTTP/1.1" 200 - "-" "curl/7.29.0" 127.0.0.1 - - [05/Nov/2017:16:23:39 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0" 192.168.9.134 - - [05/Nov/2017:16:25:02 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0" 192.168.9.134 - - [05/Nov/2017:16:25:47 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0" 192.168.9.134 - - [05/Nov/2017:16:26:19 +0800] "GET HTTP://111.com/admin/index.php HTTP/1.1" 200 5 "-" "curl/7.29.0"
Windows訪問瀏覽器爲403html