diff -Nur --no-dereference smeserver-isoqlog-2.2.1.old/root/etc/e-smith/templates/etc/httpd/conf/httpd.conf/VirtualHosts/28isoqlogProxyPass smeserver-isoqlog-2.2.1/root/etc/e-smith/templates/etc/httpd/conf/httpd.conf/VirtualHosts/28isoqlogProxyPass --- smeserver-isoqlog-2.2.1.old/root/etc/e-smith/templates/etc/httpd/conf/httpd.conf/VirtualHosts/28isoqlogProxyPass 2012-08-21 02:53:33.000000000 -0400 +++ smeserver-isoqlog-2.2.1/root/etc/e-smith/templates/etc/httpd/conf/httpd.conf/VirtualHosts/28isoqlogProxyPass 2022-07-29 01:39:09.247000000 -0400 @@ -18,9 +18,7 @@ SSLRequireSSL on - order deny,allow - deny from all - allow from $localAccess $externalSSLAccess + Require ip $localAccess $externalSSLAccess HERE diff -Nur --no-dereference smeserver-isoqlog-2.2.1.old/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/85DefaultAccess smeserver-isoqlog-2.2.1/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/85DefaultAccess --- smeserver-isoqlog-2.2.1.old/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/85DefaultAccess 2012-08-21 00:34:21.000000000 -0400 +++ smeserver-isoqlog-2.2.1/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/85DefaultAccess 2022-07-29 01:39:09.249000000 -0400 @@ -5,9 +5,7 @@ Options None AllowOverride None - order deny,allow - deny from all - allow from none + Require all denied diff -Nur --no-dereference smeserver-isoqlog-2.2.1.old/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/90isoqlog smeserver-isoqlog-2.2.1/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/90isoqlog --- smeserver-isoqlog-2.2.1.old/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/90isoqlog 2022-07-29 01:38:18.635000000 -0400 +++ smeserver-isoqlog-2.2.1/root/etc/e-smith/templates/etc/httpd/isoqlog-conf/httpd.conf/90isoqlog 2022-07-29 01:42:03.088000000 -0400 @@ -10,9 +10,7 @@ php_admin_value session.save_path /var/lib/php/isoqlog-session php_admin_value openbase_dir /var/lib/qmailtools/isoqlog/htdocs:/var/lib/php/isoqlog-session AllowOverride None - order deny,allow - deny from all - allow from 127.0.0.1 + Require ip 127.0.0.1 # /ca is only allowed for admin and explicitely authorized users @@ -20,7 +18,10 @@ AuthName "Isoqlog Admin" AuthType Basic TKTAuthLoginURL /server-common/cgi-bin/login - require user admin {getUsersList("isoqlog");} + + Require user admin {getUsersList("isoqlog");} + Require ip 127.0.0.1 + { my $ManagerTimeout = ${'httpd-admin'}{ManagerTimeout} || "30m"; $OUT = " TKTAuthTimeout $ManagerTimeout\n"; @@ -29,6 +30,5 @@ my $ManagerTimeoutReset = ${'httpd-admin'}{ManagerTimeoutReset} || "0.66"; $OUT .= " TKTAuthTimeoutRefresh $ManagerTimeoutReset\n"; } - Satisfy all