I am not big into webhosting, but I have just been placed in charge of the webserver at work. We are currently using Windows 2000 and apache 2.0.54. My manager wants me to verify that the server is set up securely. From reading through the default httpd.conf file that is provided with a fresh install of apache, I think the default is secure.
We do not host any webpages for users, so should I comment out the LoadModule userdir_module line if the website works without it being enabled? Also, if I am wrong about the default .conf being secure, please let me know.
Thanks in advance
We do not host any webpages for users, so should I comment out the LoadModule userdir_module line if the website works without it being enabled? Also, if I am wrong about the default .conf being secure, please let me know.
Thanks in advance