Return-Path: Delivered-To: apmail-httpd-modules-dev-archive@locus.apache.org Received: (qmail 7669 invoked from network); 4 Sep 2007 20:48:00 -0000 Received: from hermes.apache.org (HELO mail.apache.org) (140.211.11.2) by minotaur.apache.org with SMTP; 4 Sep 2007 20:48:00 -0000 Received: (qmail 35651 invoked by uid 500); 4 Sep 2007 20:47:54 -0000 Delivered-To: apmail-httpd-modules-dev-archive@httpd.apache.org Received: (qmail 35423 invoked by uid 500); 4 Sep 2007 20:47:54 -0000 Mailing-List: contact modules-dev-help@httpd.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: modules-dev@httpd.apache.org Delivered-To: mailing list modules-dev@httpd.apache.org Received: (qmail 35414 invoked by uid 99); 4 Sep 2007 20:47:54 -0000 Received: from athena.apache.org (HELO athena.apache.org) (140.211.11.136) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 04 Sep 2007 13:47:54 -0700 X-ASF-Spam-Status: No, hits=-0.0 required=10.0 tests=SPF_PASS X-Spam-Check-By: apache.org Received-SPF: pass (athena.apache.org: domain of buanzo@buanzo.com.ar designates 209.85.132.251 as permitted sender) Received: from [209.85.132.251] (HELO an-out-0708.google.com) (209.85.132.251) by apache.org (qpsmtpd/0.29) with ESMTP; Tue, 04 Sep 2007 20:47:48 +0000 Received: by an-out-0708.google.com with SMTP id b15so447257ana for ; Tue, 04 Sep 2007 13:47:27 -0700 (PDT) Received: by 10.100.144.11 with SMTP id r11mr5176043and.1188938845500; Tue, 04 Sep 2007 13:47:25 -0700 (PDT) Received: from ?10.10.0.4? ( [190.16.140.164]) by mx.google.com with ESMTPS id c38sm6536437anc.2007.09.04.13.47.21 (version=TLSv1/SSLv3 cipher=RC4-MD5); Tue, 04 Sep 2007 13:47:22 -0700 (PDT) Message-ID: <46DDC457.3050500@buanzo.com.ar> Date: Tue, 04 Sep 2007 17:47:19 -0300 From: Arturo 'Buanzo' Busleiman Organization: GNU/Buanzo User-Agent: Thunderbird 2.0.0.6 (X11/20070728) MIME-Version: 1.0 To: modules-dev@httpd.apache.org Subject: [OT] Re: Versioning a module? References: <0E391D05-55C5-4E07-88C9-836AD4E51EB0@sun.com> <20070904204309.GR25974@cr> In-Reply-To: <20070904204309.GR25974@cr> X-Enigmail-Version: 0.95.3 OpenPGP: id=6857704D Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit X-Virus-Checked: Checked by ClamAV on apache.org -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Mads Toftum wrote: > It used to be that you could just stick it into the server header and be > done with it, but with recent trends of security "experts" telling > everyone to go ServerTokens Prod, that doesn't really fly. Typical security-through-obscurity approach. I just hate that kind of "expert". I'll see that it does not become practice in this year's SANS TOP-20 (I've been a contributor to it for the last 4 years www.sans.org/top20)! - -- Arturo "Buanzo" Busleiman - Consultor Independiente en Seguridad Informatica Servicios Ofrecidos: http://www.buanzo.com.ar/pro/ Unase a los Foros GNU/Buanzo - La palabra Comunidad en su maxima expresion. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.7 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iD8DBQFG3cRXAlpOsGhXcE0RCo0rAJ9m58S0gNj8DYy52CYMz0Sn/54ucgCfQJ/g P9Jz3pfhbALdJRuO0csuzXo= =SPAA -----END PGP SIGNATURE-----