> > Ok, I fixed this by removing these lines from httpd.conf:
> >
> > <Directory />
> > AllowOverride None
> > Order Deny,Allow
> > Deny from all
> > </Directory>
> 
> > Can anyone tell me why that block worked with the old apache2 layout
> > but not the new?  Am I opening any holes by getting rid of it?
> 
> In my opinion you should leave the above and add just allow the
> directories you really have to by adding an appropriate
> directory-directive.
> 
> Regards,
> Martin

Actually all of my pages are either in / or /admin/.  If I leave the
above I get a 403 when accessing https though.

- Grant

-- 
[email protected] mailing list

Reply via email to