From c6f36f01c83cf435bbc338443a357f81c49cbbca Mon Sep 17 00:00:00 2001
From: Marius Cramer <m.cramer@pixcept.de>
Date: Wed, 20 Nov 2013 09:21:47 -0500
Subject: [PATCH] Implemented FS#2531 - switch from a reseller to a client

---
 server/conf/apache_ispconfig.conf.master |   65 ++++++++++++++++++++++++++++++--
 1 files changed, 61 insertions(+), 4 deletions(-)

diff --git a/server/conf/apache_ispconfig.conf.master b/server/conf/apache_ispconfig.conf.master
index 1211285..5fb0f2c 100644
--- a/server/conf/apache_ispconfig.conf.master
+++ b/server/conf/apache_ispconfig.conf.master
@@ -3,8 +3,8 @@
 # ISPConfig Logfile configuration for vlogger
 ################################################
 
-LogFormat "%v %h %l %u %t \"%r\" %>s %b \"%{Referer}i\" \"%{User-Agent}i\"" combined_ispconfig
-CustomLog "| /usr/sbin/vlogger -s access.log -t \"%Y%m%d-access.log\" /var/log/ispconfig/httpd" combined_ispconfig
+LogFormat "%v %h %l %u %t \"%r\" %>s %B \"%{Referer}i\" \"%{User-Agent}i\"" combined_ispconfig
+CustomLog "| /usr/local/ispconfig/server/scripts/vlogger -s access.log -t \"%Y%m%d-access.log\" /var/log/ispconfig/httpd" combined_ispconfig
 
 <Directory /var/www/clients>
     AllowOverride None
@@ -12,7 +12,64 @@
     Deny from all
 </Directory>
 
+# Do not allow access to the root file system of the server for security reasons
+<Directory />
+    AllowOverride None
+    Order Deny,Allow
+    Deny from all
+</Directory>
+
+<Directory /var/www/conf>
+    AllowOverride None
+    Order Deny,Allow
+    Deny from all
+</Directory>
+
+# Except of the following directories that contain website scripts
+<Directory /usr/share/phpmyadmin>
+        Order allow,deny
+        Allow from all
+</Directory>
+
+<Directory /usr/share/phpMyAdmin>
+        Order allow,deny
+        Allow from all
+</Directory>
+
+<Directory /usr/share/squirrelmail>
+        Order allow,deny
+        Allow from all
+</Directory>
+
+# Allow access to mailman on OpenSuSE
+<Directory /usr/lib/mailman/cgi-bin>
+        AllowOverride All
+		order allow,deny
+        allow from all
+</Directory>
+
+<Directory /usr/lib/mailman/icons>
+        order allow,deny
+        allow from all
+</Directory>
+
+<Directory /var/lib/mailman/archives/>
+        Options +FollowSymLinks
+        order allow,deny
+        allow from all
+</Directory>
+
+# allow path to awstats and alias for awstats icons
+<Directory /usr/share/awstats>
+        Order allow,deny
+        Allow from all
+</Directory>
+
+Alias /awstats-icon "/usr/share/awstats/icon"
+
+NameVirtualHost *:80
+NameVirtualHost *:443
 <tmpl_loop name="ip_adresses">
-NameVirtualHost {tmpl_var name="ip_address"}:80
-NameVirtualHost {tmpl_var name="ip_address"}:443
+NameVirtualHost {tmpl_var name="ip_address"}:{tmpl_var name="port"}
 </tmpl_loop>
+

--
Gitblit v1.9.1