服务器常见漏洞处理
1.HTTP Server类型和版本号隐藏(IIS)
1.1下载url rewrite(https://www.iis.net/downloads/microsoft/url-rewrite#additionalDownloads)
1.2编辑 WebConfig
<system.web>
<compilation targetFramework="4.6.1" />
<httpRuntime enableVersionHeader="false" />
</system.web>
<system.webServer>
...
<rewrite>
<outboundRules rewriteBeforeCache="true">
<rule name="Remove Server header">
<match serverVariable="RESPONSE_Server" pattern=".+" />
<action type="Rewrite" value="Apache" />
</rule>
</outboundRules>
</rewrite>
</system.webServer>
本文来自博客园,作者:WantRemake,转载请注明原文链接:https://www.cnblogs.com/SmallChen/p/17176587.html