Browse Source

Deny access to config, content, content-sample, lib and vendor dirs

Send 404 Not Found instead of 403 Forbidden
Daniel Rudolf 9 years ago
parent
commit
fbb744dd43
1 changed files with 1 additions and 0 deletions
  1. 1 0
      .htaccess

+ 1 - 0
.htaccess

@@ -5,6 +5,7 @@
     RewriteCond %{REQUEST_FILENAME} !-f
     RewriteCond %{REQUEST_FILENAME} !-f
     RewriteCond %{REQUEST_FILENAME} !-d
     RewriteCond %{REQUEST_FILENAME} !-d
     RewriteRule ^(.*)$ index.php?$1 [L,QSA]
     RewriteRule ^(.*)$ index.php?$1 [L,QSA]
+    RewriteRule ^(config|content|content-sample|lib|vendor)/.* - [R=404,L]
 
 
     <IfModule mod_env.c>
     <IfModule mod_env.c>
         SetEnv PICO_URL_REWRITING 1
         SetEnv PICO_URL_REWRITING 1