TommyWillB
Registered
So I was bragging to a PC guy at work that my Mac OS X Apache/PHP setup was one of the most secure out-of-box setups on the planet. That it had a built-n firewaill with no ports open except 80...
...then he said "Oh yeah? Well as long as you have HTTP PUT enabled on port 80, you ain't secure!".
Huh?!?
I found the section on the Apache.org site that talks about LIMITING various HTTP methods, but I'm not quite clear where to put this <LIMIT> command.
Anyone have any general or specific opinions on this subject?
Does Apple have any security notes about the HTTP PUT method?
...then he said "Oh yeah? Well as long as you have HTTP PUT enabled on port 80, you ain't secure!".
Huh?!?
I found the section on the Apache.org site that talks about LIMITING various HTTP methods, but I'm not quite clear where to put this <LIMIT> command.
Anyone have any general or specific opinions on this subject?
Does Apple have any security notes about the HTTP PUT method?