Adobe 38043740 Lockdown Guide - Page 21
If you are not using cfchart and do not need access to any of the URIs below you may simply deny /CFIDE
UPC - 883919135168
View all Adobe 38043740 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 21 highlights
Our strategy here is to block all URI's that do not need to be accessible to the public. Some of the resources we will block here may not pose any known threat but could be used to determine the version of ColdFusion you are running. Ideally we could block all /CFIDE, however if you use cfchart the generated graphics are rendered from /CFIDE/GraphData.cfm It is not possible using request filtering to deny the URI /CFIDE but then allow /CFIDE/GraphData.cfm for example. If you are not using cfchart and do not need access to any of the URIs below you may simply deny /CFIDE instead of listing each sub directory. 21
21
Our strategy here is to block all URI’s that do not need to be accessible to the public. Some of the resources
we will block here may not pose any known threat but could be used to determine the version of ColdFusion
you are running. Ideally we could block all /CFIDE, however if you use cfchart the generated graphics are
rendered from /CFIDE/GraphData.cfm
It is not possible using request filtering to deny the URI /CFIDE but then allow /CFIDE/GraphData.cfm for
example.
If you are not using cfchart and do not need access to any of the URIs below you may simply deny /CFIDE
instead of listing each sub directory.