以下是Debian Apache的安全設置方法:
sudo apt update && sudo apt upgrade -y
sudo ufw enable
sudo ufw allow 'Apache Full'
rewrite、headers):sudo a2dismod <module_name>
sudo systemctl restart apache2
sudo apt install certbot python3-certbot-apache
sudo certbot --apache -d yourdomain.com
/etc/apache2/conf-enabled/security.conf,設置:ServerSignature Off
ServerTokens Prod
.htaccess或虛擬主機配置限制IP訪問:<Directory "/var/www/html">
Require all granted
# 或限制特定IP
# Require ip 192.168.1.1
</Directory>
sudo tail -f /var/log/apache2/access.log
sudo apt install goaccess
goaccess /var/log/apache2/access.log
Options -Indexes。755,文件為644,屬主為www-data。mod_security)增強防護。參考來源: