greyltc / docker-owncloud

Arch linux based docker container with owncloud
111 stars 37 forks source link

turn off HTTP TRACE vulnerability #87

Closed dknell closed 8 years ago

dknell commented 8 years ago

There is a vulnerability in apache when allowing HTTP TRACE requests. It is only used for debugging, so we may as well turn it off. ;)

http://www.kb.cert.org/vuls/id/867593

greyltc commented 8 years ago

Thanks for this!