Return-Path: X-Original-To: apmail-httpd-users-archive@www.apache.org Delivered-To: apmail-httpd-users-archive@www.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id 7F7D418E3B for ; Fri, 12 Feb 2016 11:49:51 +0000 (UTC) Received: (qmail 79770 invoked by uid 500); 12 Feb 2016 11:49:49 -0000 Delivered-To: apmail-httpd-users-archive@httpd.apache.org Received: (qmail 79726 invoked by uid 500); 12 Feb 2016 11:49:49 -0000 Mailing-List: contact users-help@httpd.apache.org; run by ezmlm Precedence: bulk Reply-To: users@httpd.apache.org list-help: list-unsubscribe: List-Post: List-Id: Delivered-To: mailing list users@httpd.apache.org Received: (qmail 79716 invoked by uid 99); 12 Feb 2016 11:49:49 -0000 Received: from Unknown (HELO spamd2-us-west.apache.org) (209.188.14.142) by apache.org (qpsmtpd/0.29) with ESMTP; Fri, 12 Feb 2016 11:49:49 +0000 Received: from localhost (localhost [127.0.0.1]) by spamd2-us-west.apache.org (ASF Mail Server at spamd2-us-west.apache.org) with ESMTP id 8879C1A0512 for ; Fri, 12 Feb 2016 11:49:48 +0000 (UTC) X-Virus-Scanned: Debian amavisd-new at spamd2-us-west.apache.org X-Spam-Flag: NO X-Spam-Score: -0.802 X-Spam-Level: X-Spam-Status: No, score=-0.802 tagged_above=-999 required=6.31 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001] autolearn=disabled Authentication-Results: spamd2-us-west.apache.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com Received: from mx1-us-west.apache.org ([10.40.0.8]) by localhost (spamd2-us-west.apache.org [10.40.0.9]) (amavisd-new, port 10024) with ESMTP id ttgU9YSoa6yV for ; Fri, 12 Feb 2016 11:49:48 +0000 (UTC) Received: from mail-qk0-f172.google.com (mail-qk0-f172.google.com [209.85.220.172]) by mx1-us-west.apache.org (ASF Mail Server at mx1-us-west.apache.org) with ESMTPS id A4A9B20655 for ; Fri, 12 Feb 2016 11:49:47 +0000 (UTC) Received: by mail-qk0-f172.google.com with SMTP id x1so29894367qkc.1 for ; Fri, 12 Feb 2016 03:49:47 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; bh=LIeI9519k3Xo/+XBlZPNkjh3GJDBNfOmBI9aHFp5zvo=; b=R+cbDky4a+zCdy+eIik0fm3rPYj2kjdMzeiSJBpgJvRVfWhU29rGVxVLwev7vf00Mg dM/d0aUm7+eZkIraoMBW85t0Y48eGWks4bLx6C/PBKcRnNq0PdKpIYIxEG3JtUCeeC3u 4Mlage4jLf+PSct6BV/tJer8twJUPC9RMvGBJNI3AK/1EYk6OuRpHAjAGxcfY1dRABsk ei3zRrE0LHjR8t0yvDUD/Up2Lnn9XmnFngX423mHJRqzEWQsjRpWvAKB6xr0abQq0gI6 iA2Hq6+GyMW8uBipPpGtEXXFEIuVBDPMr/dnk4zoF9YhhlWI7sG6fGrU0CDcubh62o55 XRWQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:content-type; bh=LIeI9519k3Xo/+XBlZPNkjh3GJDBNfOmBI9aHFp5zvo=; b=XXocz2SMWvZyAKzDYpDrlKbcRufbsoXEsYYr4TlvsUBHWgEyDZ1zIOrjQtleQXflrn m7C+H31Ox0v3MGHVaLNc1nrxuzbKarqG3XEojBghvIHPEtzJTnvmDXzeed30YxT9Ihmz 269PNyd7Fi1At253trp2SawWFprN7gdXi2UGVQUraAlpmQ89Q1pNIb2x3v8aCMNJMDR7 uCNrmcwkV5YTFvkb1PT2f6/rpqm5dT9k8p1dKiKrlQsoPH1MnpA6SbYQY7JSioT03GCr cDK21mKKIpdZ3UL9e27IWudk1Fo30p3Z/gfN6SWmZqS+JCYr0kfeaKc8i0Ka4+9VfU/r 5fXg== X-Gm-Message-State: AG10YOROWfSdY4cuAXXOhHCzhm3UMaKEiar2KJW91uT2eIKQGiZ0VehcAKLfETmjS7evAIV6VIGl3XXWVX9zhQ== MIME-Version: 1.0 X-Received: by 10.55.75.203 with SMTP id y194mr1221850qka.2.1455277780932; Fri, 12 Feb 2016 03:49:40 -0800 (PST) Received: by 10.55.5.3 with HTTP; Fri, 12 Feb 2016 03:49:40 -0800 (PST) In-Reply-To: References: <56BD0386.6070405@reach-u.com> Date: Fri, 12 Feb 2016 12:49:40 +0100 Message-ID: From: Yann Ylavic To: users@httpd.apache.org Content-Type: text/plain; charset=UTF-8 Subject: Re: [users@httpd] Block access to "OPTIONS *" On Fri, Feb 12, 2016 at 2:38 AM, Spork Schivago wrote: > Sorry to put in here, but is there away for me to test to see if my server > is affected by this OPTIONS issue? OPTIONS is not an issue, could you elaborate? > I have cPanel / WHM and ConfigServer > Firewall installed and just about every day, I see CSF blocking users from > trying to hack in using some known hacking kit. Something with the word > w00t in it and blackhat. I'd just like to make sure I got all exploitable > services closed. Thanks! Please open a new thread. Regards, Yann. --------------------------------------------------------------------- To unsubscribe, e-mail: users-unsubscribe@httpd.apache.org For additional commands, e-mail: users-help@httpd.apache.org