[Ach] nginx section augmented, please review

christian mock cm at coretec.at
Fri Nov 29 16:49:51 CET 2013


On Thu, Nov 28, 2013 at 03:06:04PM +0100, Pepi Zawodsky wrote:

> I've added a few minor tweaks to the nginx section and corrected a
>  not-working (syntax error) setting string. These settings
> _work_for_me_™ on my machine™ with nginx 1.4.4 against OpenSSL
> 1.0.1e.

works fine with nginx 1.2.1-2.2+wheezy2 on a raspberry pi.

can you please also remove the

add_header X-Frame-Options DENY

a) it breaks frame-based stuff
b) it isn't crypto-related anyways

cm.

-- 
Christian Mock                          Wiedner Hauptstr. 15
Senior Security Engineer                1040 Wien
CoreTEC IT Security Solutions GmbH      +43-1-5037273
FN 214709 z

.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.
CoreTEC: Web Application Audit - Damit so etwas nicht passiert!

http://heise.de/-1260559

.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.-.



More information about the Ach mailing list