Subj : Re: web server To : Utopian Galt From : Tracker1 Date : Mon Apr 04 2022 18:42:58 On 4/3/22 18:31, Utopian Galt wrote: > ... Request: GET /sql/phpmyadmin4/index.php?lang=en HTTP/1.1 > ... !ERROR: 404 Not Found (line 3721) > ... > > How do I get people to GTFO out of /sql, /phpmyadmin, /db etc? > > That is the big takeaway. These are bots trying to see if you have various (potentially compromisable) web applications on default ports... as long as you're seeing 400 responses, you are fine... the 404 is basically a bugger off. I wouldn't worry too much about them... You could create an /error/404.ssjs to handle these with a custom response (I'm doing this for a custom default.html and/or redirect), but it's probably not worth the effort imo. Alternatively, you could use a different webserver as a frontline reverse proxy and configure those routes not to go to your BBS host... this will make integration of TLS on your other services potentially much more difficult though. -- Michael J. Ryan - tracker1@roughneckbbs.com --- ■ Synchronet ■ Roughneck BBS - roughneckbbs.com --- SBBSecho 3.15-Linux * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705) .