Skip to content

Add configuration to deny access to composer files, .git etc. #99

@lavita-it

Description

@lavita-it

What type of report is this:

Q A
Bug report?
Feature request?
Enhancement? Y

Description:

When deploying as described a lot of config files would be public (composer.lock, composer.custom, composer.json, .git etc.). I think we would need an additional apache configuration file to deny access to those files.

If a bug:

Q A
Mautic version 2.15.0
PHP version 7.2

Steps to reproduce:

  1. Deploy to Elastic Beanstalk
  2. Access http://your-domain.com/.git/config or /composer.json etc.

Log errors:

No errors

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions