apache: Remove product informations
authorDimitri Savineau <dsavinea@redhat.com>
Tue, 30 Aug 2016 18:13:57 +0000 (14:13 -0400)
committerDimitri Savineau <dsavinea@redhat.com>
Tue, 30 Aug 2016 18:13:57 +0000 (14:13 -0400)
By default, the httpd version and the OS type is described in the
HTTP header 'Server'.

Server: Apache/2.4.6 (Red Hat Enterprise Linux)

This patch allows to remove the specific informations related to the
httpd server and the OS.

Change-Id: Ib608919102bc6b2c7619a522ae1262729dc7a91e

puppet/services/apache.yaml

index 758d951..7595e4c 100644 (file)
@@ -31,6 +31,8 @@ outputs:
         # internal_api_uri -> [IP]
         # internal_api_subnet - > IP/CIDR
         apache::ip: {get_param: [ServiceNetMap, ApacheNetwork]}
+        apache::server_signature: 'Off'
+        apache::server_tokens: 'Prod'
         apache_remote_proxy_ips_network:
           str_replace:
             template: "NETWORK_subnet"