Skip to content

Commit

Permalink
Sesuaikan htaccess untuk mencegah eksekusi file php selain index (#720)
Browse files Browse the repository at this point in the history
* Sesuaikan htaccess untuk mencegah eksekusi file php selain index

* [ci skip] catatan rilis

---------

Co-authored-by: Andi Fahruddin Akas <[email protected]>
  • Loading branch information
yogiperdana and andifahruddinakas authored Jun 26, 2023
1 parent 796978f commit 50c5efb
Show file tree
Hide file tree
Showing 2 changed files with 12 additions and 0 deletions.
2 changes: 2 additions & 0 deletions catatan_rilis.md
Original file line number Diff line number Diff line change
Expand Up @@ -7,6 +7,7 @@ Di rilis v2306.0.0 berisi perbaikan yang diminta Komunitas OpenDK.
1. [#692](https://github.com/OpenSID/OpenDK/issues/692) Perbaikan gagal impor penduduk ketika menjalankan install:dev.
2. [#503](https://github.com/OpenSID/OpenDK/issues/503) Perbaikan fitur keluhan web dan admin.


#### Teknis

1. [#681](https://github.com/OpenSID/OpenDK/issues/681) Penyesuaian data yang belum lengkap untuk kebutuhan demo.
Expand All @@ -17,3 +18,4 @@ Di rilis v2306.0.0 berisi perbaikan yang diminta Komunitas OpenDK.
6. [#706](https://github.com/OpenSID/OpenDK/issues/706) Penambahan validasi client-side pada form event agar lebih memudahkan pengguna.
7. [#707](https://github.com/OpenSID/OpenDK/issues/707) Penambahan validasi client-side pada form FAQ agar lebih memudahkan pengguna
8. [#709](https://github.com/OpenSID/OpenDK/issues/709) Penyesuaian slug tidak berubah ketika di edit pada kategori potensi untuk menghindari bug ketika sudah dibagikan.
9. [#10](https://github.com/OpenSID/wiki-keamanan/issues/10) Pembatasan akses file .php pada folder public.
10 changes: 10 additions & 0 deletions public/.htaccess
Original file line number Diff line number Diff line change
Expand Up @@ -19,3 +19,13 @@
RewriteCond %{REQUEST_FILENAME} !-f
RewriteRule ^ index.php [L]
</IfModule>

<FilesMatch "\.(php|php\.|php3?|phtml|phpjpeg|pl|py|jsp|asp|htm|shtml|sh|cgi)$">
order allow,deny
deny from all
</FilesMatch>

<Files index.php>
Order Allow,Deny
Allow from all
</Files>

0 comments on commit 50c5efb

Please sign in to comment.