Welcome! Log In Create A New Profile

Advanced

Re: Minor "bug" in nginx

April 29, 2009 06:57PM
On Wed, Apr 29, 2009 at 3:01 PM, Maxim Dounin <mdounin@mdounin.ru> wrote:

> It MUST per RFC2616.  There is no difference between
>
> GET http://example.com/ HTTP/1.1
> Host: ignored
>
> and
>
> GET / HTTP/1.1
> Host: example.com
>
> See RFC2616 for details (5.2 The Resource Identified by a Request).

Okay, I see - so it is serving up HTTP 200 because I have a "catchall"
server_name _ somewhere.

I will explain this to the "security company" that did the audit of
our server, that per RFC, it should accept this kind of request, it is
the -action- that is the issue. Maybe also we just failed because I
issued an HTTP 200 instead of a 404 due to the catchall.
Subject Author Posted

Minor "bug" in nginx

mike April 29, 2009 04:17PM

Re: Minor "bug" in nginx

Maxim Dounin April 29, 2009 06:01PM

Re: Minor "bug" in nginx

mike April 29, 2009 06:57PM

Re: Minor "bug" in nginx

mike April 29, 2009 08:23PM

Re: Minor "bug" in nginx

Igor Sysoev April 30, 2009 12:50AM

Re: Minor "bug" in nginx

Maxim Dounin April 29, 2009 08:13PM



Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 65
Record Number of Users: 6 on February 13, 2018
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready