On Thu, Aug 21, 2014 at 8:42 AM, Jeff Trawick <traw...@gmail.com> wrote: > CGIPassHeader could be allowed in htaccess if the httpd admin has specified > "AllowOverride ... AuthConfig ..."* or "AllowOverrideList CGIPassHeader" in > the main config. > > Make sense? > > *Only auth headers are currently suppressed, so this directive could be > named CGIPassAuthHeader and have a more visual tie to "AuthConfig".
+1 (a convo on IRC had me searching for this)