From c206665ed8bf21a56d8e38b8516ba50107c2a332 Mon Sep 17 00:00:00 2001 From: hoellen Date: Thu, 24 Oct 2019 18:40:29 +0200 Subject: [PATCH] harden nextcloud nginx config --- nextcloud/rootfs/nginx/sites-enabled/nginx.conf | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/nextcloud/rootfs/nginx/sites-enabled/nginx.conf b/nextcloud/rootfs/nginx/sites-enabled/nginx.conf index 7331a00..3a663ad 100644 --- a/nextcloud/rootfs/nginx/sites-enabled/nginx.conf +++ b/nextcloud/rootfs/nginx/sites-enabled/nginx.conf @@ -33,7 +33,7 @@ server { } location / { - rewrite ^ /index.php$request_uri; + rewrite ^ /index.php; } location ~ ^/(?:build|tests|config|lib|3rdparty|templates|data)/ { @@ -47,6 +47,7 @@ server { location ~ ^/(?:index|remote|public|cron|core/ajax/update|status|ocs/v[12]|updater/.+|oc[ms]-provider/.+)\.php(?:$|/) { include /nginx/conf/fastcgi_params; fastcgi_split_path_info ^(.+\.php)(/.*)$; + try_files $fastcgi_script_name =404; fastcgi_hide_header X-Powered-By; fastcgi_param SCRIPT_FILENAME $document_root$fastcgi_script_name; fastcgi_param PATH_INFO $fastcgi_path_info;