Add ability to set ServerTokens configuration in Apache
Often there is a desire by security teams not to expose verbose information about the versions of software and operating system running on a system. It would be great if the ServerTokens and ServerSignature configuration items were available to silence or minimize the information given. The motivation here is to prevent handing an attacker information about what older exploits might apply or not to your server.
2
votes
