Hiding the backend technology stack

General Tech Technology & Software 2 years ago

0 2 0 0 0 tuteeHUB earn credit +10 pts

5 Star Rating 1 Rating

Posted on 16 Aug 2022, this text provides information on Technology & Software related to General Tech. Please note that while accuracy is prioritized, the data presented might not be entirely correct or up-to-date. This information is offered for general knowledge and informational purposes only, and should not be considered as a substitute for professional advice.

Take Quiz To Earn Credits!

Turn Your Knowledge into Earnings.

tuteehub_quiz

Answers (2)

Post Answer
profilepic.png
manpreet Tuteehub forum best answer Best Answer 2 years ago

As a security measure, I want to hide the technology stack I am using on my server. What are effective ways to do this? I thought about

1) Use mod_rewrite or Rewrite Module to hide any page extensions like .php or .aspx
2) Turn off all error reporting

1b) use mod_rewrite to serve a misleading extension on purpose, like disguising a php page as aspx 
2b) Throw misleading errors to go with 1b), making my php pages display asp-like errors.

0 views
0 shares

profilepic.png
manpreet 2 years ago
  1. Don't show accurate page extensions
  2. Don't use standard error pages
  3. Make sure the web server and application layer (ASP.NET, PHP et al) hide their presence in browser headers)
  4. If your error pages do anything dynamic, assume that this can fail somehow and have a set of static html pages you can serve that aren't the web servers default ones
  5. Make sure all of our technolog stacks are configured to not show stack traces on any error pages served to machines other than the local server. If for some reason all your custom errors fail then the user may see the technology stack, but they won't have a window into the underlying code

0 views   0 shares

No matter what stage you're at in your education or career, TuteeHub will help you reach the next level that you're aiming for. Simply,Choose a subject/topic and get started in self-paced practice sessions to improve your knowledge and scores.