2. CIS Apache Benchmark

CIS Apache Benchmark for UNIX: OS-Level Issues

Much in the same way that you first build the foundation of a new house before you put up the walls and roof, the same procedure should be followed when you plan to install a web server. The foundation of the web server is the underlying Operating System (OS), and appropriate steps should be taken to lock down certain services so that it is configured adequately to support the web server. This chapter highlights OS-level issues that must be addressed prior to implementing the web server.

Minimize/Patch Non-HTTP Services

Even if the end goal of an attack is to compromise a web application, attackers will often look for other avenues of attack rather than targeting the web server ...

Get Preventing Web Attacks with Apache now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.