--- rpms/smeserver-phpki-ng/contribs10/smeserver-phpki-ng-0.3-bz12268-bz12266-bz11440-bz11439.patch 2022/12/28 20:13:52 1.3 +++ rpms/smeserver-phpki-ng/contribs10/smeserver-phpki-ng-0.3-bz12268-bz12266-bz11440-bz11439.patch 2023/05/12 02:30:32 1.4 @@ -52,7 +52,7 @@ diff -Nur --no-dereference smeserver-php + # and we redirect old config to our new safer script + RewriteEngine On + RewriteCond %{QUERY_STRING} stage=dl_crl -+ RewriteRule ^ /phpki/dl_crl.php? [R=302,L] ++ RewriteRule ^ /phpki/dl_crl.php [QSD,R=302,L] HERE + # safely redirect crl request to php script striping all GET requests @@ -212,9 +212,9 @@ diff -Nur --no-dereference smeserver-php RewriteEngine On - RewriteCond %{QUERY_STRING} stage=dl_crl + RewriteCond %{QUERY_STRING} stage=dl_crl(&|\$) - RewriteRule ^ /phpki/dl_crl.php? [R=302,L] + RewriteRule ^ /phpki/dl_crl.php [QSD,R=302,L] + RewriteCond %{QUERY_STRING} stage=dl_crl_pem(&|\$) -+ RewriteRule ^ /phpki/dl_crl_pem.php? [R=302,L] ++ RewriteRule ^ /phpki/dl_crl_pem.php [QSD,R=302,L] HERE # safely redirect crl request to php script striping all GET requests