{"id":938,"date":"2015-05-12T15:31:14","date_gmt":"2015-05-12T14:31:14","guid":{"rendered":"https:\/\/fredel.fr\/?p=938"},"modified":"2015-05-13T21:46:57","modified_gmt":"2015-05-13T20:46:57","slug":"protection-de-lacces-aux-fichiers-sensibles","status":"publish","type":"post","link":"https:\/\/fredel.fr\/protection-de-lacces-aux-fichiers-sensibles\/","title":{"rendered":"Protection de l\u2019acc\u00e8s aux fichiers sensibles"},"content":{"rendered":"
Ajoutez ces lignes dans le fichier .htaccess \u00e0 la racine du site
\n# Pas d’affichage du contenu des r\u00e9pertoires si pas de premi\u00e8re page
\nOptions -Indexes
\n# Interdiction d’acc\u00e9der directement \u00e0 certains fichiers :<\/p>\n
\r\n\r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n \r\n Order allow,deny\r\n Deny from all\r\n<\/files>\r\n\r\n* Pour bloquer les requ\u00eates trace, delete, debug et track envoy\u00e9 \u00e0 votre site :\r\n \r\n# block bad request\r\nRewriteEngine On\r\nRewriteCond %{REQUEST_METHOD} ^(TRACE|DELETE|TRACK|DEBUG) [NC]\r\nRewriteRule ^(.*)$ - [F,L]\r\n<\/pre>\n* Pour bloquer l\u2019acc\u00e8s aux fichiers que les pirates adorent modifier\/v\u00e9roler :<\/p>\n
\r\n# Block the include-only files.\r\nRewriteEngine On\r\nRewriteBase \/\r\nRewriteRule ^wp-admin\/includes\/ - [F,L]\r\nRewriteRule !^wp-includes\/ - [S=3]\r\nRewriteRule ^wp-includes\/[^\/]+\\.php$ - [F,L]\r\nRewriteRule ^wp-includes\/js\/tinymce\/langs\/.+\\.php - [F,L]\r\nRewriteRule ^wp-includes\/theme-compat\/ - [F,L]\r\n<\/pre>\n","protected":false},"excerpt":{"rendered":"Ajoutez ces lignes dans le fichier .htaccess \u00e0 la racine du site # Pas d’affichage du contenu des r\u00e9pertoires si…<\/p>\n","protected":false},"author":21,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false},"version":2}},"categories":[27],"tags":[],"class_list":["post-938","post","type-post","status-publish","format-standard","hentry","category-securite"],"jetpack_publicize_connections":[],"acf":[],"yoast_head":"\n
Protection de l\u2019acc\u00e8s aux fichiers sensibles - Fredel<\/title>\n\n\n\n\n\n\n\n\n\n\n\n\n\n\t\n\t\n\t\n