Skip to content
This repository has been archived by the owner on Dec 19, 2019. It is now read-only.

Commit

Permalink
migrated pull request #11459 to 2.3 develop
Browse files Browse the repository at this point in the history
  • Loading branch information
jonashrem committed Oct 15, 2017
1 parent cb93fe5 commit a6f517d
Show file tree
Hide file tree
Showing 25 changed files with 304 additions and 78 deletions.
153 changes: 119 additions & 34 deletions .htaccess
Expand Up @@ -203,72 +203,157 @@
RedirectMatch 403 /\.git

<Files composer.json>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files composer.lock>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files .gitignore>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files .htaccess>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files .htaccess.sample>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files .php_cs.dist>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files .travis.yml>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files CHANGELOG.md>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files COPYING.txt>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files Gruntfile.js>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files LICENSE.txt>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files LICENSE_AFL.txt>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files nginx.conf.sample>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files package.json>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files php.ini.sample>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files README.md>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>
<Files magento_umask>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>

# For 404s and 403s that aren't handled by the application, show plain 404 response
Expand Down
10 changes: 8 additions & 2 deletions app/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions bin/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions dev/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

@@ -1 +1,7 @@
Deny from all
<IfVersion < 2.4>
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

@@ -1 +1,7 @@
Deny from all
<IfVersion < 2.4>
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

@@ -1 +1,7 @@
Deny from all
<IfVersion < 2.4>
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

@@ -1 +1,7 @@
Deny from all
<IfVersion < 2.4>
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

@@ -1 +1,7 @@
Deny from all
<IfVersion < 2.4>
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

@@ -1 +1,7 @@
Deny from all
<IfVersion < 2.4>
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions generated/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions lib/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions phpserver/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

18 changes: 14 additions & 4 deletions pub/.htaccess
Expand Up @@ -190,8 +190,13 @@
## Deny access to release notes to prevent disclosure of the installed Magento version

<Files RELEASE_NOTES.txt>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>

# For 404s and 403s that aren't handled by the application, show plain 404 response
Expand All @@ -207,8 +212,13 @@ ErrorDocument 403 /errors/404.php
###########################################
## Deny access to cron.php
<Files cron.php>
order allow,deny
deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>
</Files>

<IfModule mod_headers.c>
Expand Down
2 changes: 1 addition & 1 deletion pub/media/.htaccess
@@ -1,4 +1,4 @@
Options All -Indexes
Options -Indexes

<IfModule mod_php5.c>
php_flag engine 0
Expand Down
10 changes: 8 additions & 2 deletions pub/media/customer/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions pub/media/downloadable/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

10 changes: 8 additions & 2 deletions pub/media/import/.htaccess
@@ -1,2 +1,8 @@
Order deny,allow
Deny from all
<IfVersion < 2.4>
order allow,deny
deny from all
</IfVersion>
<IfVersion >= 2.4>
Require all denied
</IfVersion>

0 comments on commit a6f517d

Please sign in to comment.