From 93521212e6d905d4aa38400f561af56595e8a027 Mon Sep 17 00:00:00 2001 From: Gunnstein Lye <289744+glye@users.noreply.github.com> Date: Mon, 9 Oct 2023 08:37:00 +0200 Subject: [PATCH] Link to vhosts in install doc, rather than directly (#2155) --- .../security/security_checklist.md | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/docs/infrastructure_and_maintenance/security/security_checklist.md b/docs/infrastructure_and_maintenance/security/security_checklist.md index ddce42c185..80f2d6b835 100644 --- a/docs/infrastructure_and_maintenance/security/security_checklist.md +++ b/docs/infrastructure_and_maintenance/security/security_checklist.md @@ -127,8 +127,7 @@ The default list of blocked file types contains: `hta htm html jar js jse pgif p ### Block execution of scripts in `var` directory Make sure the web server blocks the execution of PHP files and other scripts in the `var` directory. -See the line below `# Disable .php(3) and other executable extensions in the var directory` in the -[virtual host configuration](https://raw.githubusercontent.com/ibexa/post-install/main/resources/templates/apache2/vhost.template). +See the line below `# Disable .php(3) and other executable extensions in the var directory` in the example virtual host files for Apache and Nginx, provided in the [installation documentation](install_ibexa_dxp.md#set-up-virtual-host). ### Use secure password hashing