1234567891011121314151617181920212223242526 |
- # Global restrictions configuration file.
- # Designed to be included in any server {} block.
- location = /favicon.ico {
- log_not_found off;
- access_log off;
- }
- location = /robots.txt {
- allow all;
- log_not_found off;
- access_log off;
- }
- # Deny all attempts to access hidden files such as .htaccess, .htpasswd, .DS_Store (Mac).
- # Keep logging the requests to parse later (or to pass to firewall utilities such as fail2ban)
- location ~ /\. {
- deny all;
- return 404;
- }
- # Deny access to any files with a .php extension in the uploads directory
- # Works in sub-directory installs and also in multisite network
- # Keep logging the requests to parse later (or to pass to firewall utilities such as fail2ban)
- location ~* /(?:uploads)/.*\.php$ {
- deny all;
- }
|