-
-
Notifications
You must be signed in to change notification settings - Fork 315
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Hide "X-Powered-By: Luracast Restler" in response headers #514
Comments
May i sugest if is in production mode hide, else show? |
Yes, this header doesn't needed on production servers 2016-01-08 13:39 GMT+02:00 João Pina [email protected]:
|
|
I like to suggest to remove the X-Powered-By header by default. |
This makes sense as we never want to divulge too much info. Leaving on in dev can help diagnose versioning issues... I have also added (and suggest it for others), adding a unique request ID which can be referenced in logs etc... |
For security reasons is it possible to add option to remove this header?
This info disclosures internal server structure.
The text was updated successfully, but these errors were encountered: