SvenDub/SampiCMS/master/.htaccess - Htaccess File


Options -Indexes

<IfModule headers_module>

  # Send X-Content-Type-Options to prevent MIME-Type confusion
  Header always add X-Content-Type-Options "nosniff"
  # Send X-Frame-Options to prevent ClickJacking attacks
  Header always add X-Frame-Options "DENY"

<IfModule php5_module>
    # Set session cookie to use HttpOnly, which is more secure
    php_value session.cookie_httponly true

<FilesMatch ".(php|log)$">
  # Deny access to all php scripts and logs 
  Order Deny,Allow
  Deny from all
  # Allow only from localhost
  Allow from
  Allow from localhost
  Allow from ::1

<FilesMatch "index.php">
  # Allow viewing index.php
  Order Allow,Deny
  Allow from all

<FilesMatch "style.php">
  # Allow retrieving style
  Order Allow,Deny
  Allow from all

<FilesMatch "query_">
  # Allow queries
  Order Allow,Deny
  Allow from all

<FilesMatch "setup.php">
  # Allow setup
  Order Allow,Deny
  Allow from all


<FilesMatch "tmp.php">

  # TMP
  Order Allow,Deny
  Allow from all


# Hide PHP Errors
php_flag display_startup_errors off
php_flag display_errors off
php_flag html_errors off

