Re: [gentoo-user] Another apache 2.4 - Forbidden: You don't have permission to access this resource.

2020-12-03 Thread Michael
On Thursday, 3 December 2020 04:09:15 GMT the...@sys-concept.com wrote:
> When I try to configure sql-ledger, /localhost/sql-ledger/index.html
> I get an error:  Forbidden: You don't have permission to access this
> resource.
> 
> Apache starts normally but there is an entry in /var/logs/apache/error_log 
> (how to make it go way)
> 
> [:notice] [pid 5015] ModSecurity for Apache/2.9.3
> (http://www.modsecurity.org/) configured. [:notice] [pid 5015] ModSecurity:
> APR compiled version="1.7.0"; loaded version="1.7.0" [:notice] [pid 5015]
> ModSecurity: PCRE compiled version="8.44 "; loaded version="8.44
> 2020-02-12" [:notice] [pid 5015] ModSecurity: LIBXML compiled
> version="2.9.10" [:notice] [pid 5015] ModSecurity: Status engine is
> currently disabled, enable it by set SecStatusEngine to On.
> [mpm_prefork:notice] [pid 5016] AH00163: Apache/2.4.46 (Unix)
> OpenSSL/1.1.1g PHP/7.4.11 configured -- resuming normal operations Wed Dec
> 02 20:38:26.746392 2020] [core:notice] [pid 5016] AH00094: Command line:
> '/usr/sbin/apache2 -D DEFAULT_VHOST -D INFO -D SSL -D SSL_DEFAULT_VHOST -D
> LANGUAGE -D PHP -D SECURITY -d /usr/lib64/apache2 -f
> /etc/apache2/httpd.conf' [authz_core:error] [pid 4900] [client ::1:46226]
> AH01630: client denied by server configuration:
> /usr/local/sql-ledger/index.html
> 
> 
> The above error log entry has nothing to with the below configuration except
> the last line: [authz_core:error] [pid 4900] [client ::1:46226] AH01630:
> client denied by server configuration: /usr/local/sql-ledger/index.html
> 
> My sql-ledger_apache.config  2.4 config
> 
> Alias /sql-ledger /usr/local/sql-ledger/
> 
>   AllowOverride All
>   AddHandler cgi-script .pl
>   AddDefaultCharset On
>   Options ExecCGI Includes FollowSymlinks
>   Require ip 10.0.0.109
> 
> 
> 
>   Require all denied
> 
> 
> All the configuration entries are in main server (not in .htaccess)

In the first instance try adding double quotes for all paths, e.g.

Alias "/sql-ledger" "/usr/local/sql-ledger/"
Directory "/usr/local/sql-ledger">
...

and so on.  Then restart the server.

signature.asc
Description: This is a digitally signed message part.


Re: [gentoo-user] Another apache 2.4 - Forbidden: You don't have permission to access this resource.

2020-12-02 Thread Richard Snow
H Richard

On Wed, Dec 2, 2020, 10:09 PM  wrote:

> When I try to configure sql-ledger, /localhost/sql-ledger/index.html
> I get an error:  Forbidden: You don't have permission to access this
> resource.
>
> Apache starts normally but there is an entry in
> /var/logs/apache/error_log  (how to make it go way)
>
> [:notice] [pid 5015] ModSecurity for Apache/2.9.3 (
> http://www.modsecurity.org/) configured.
> [:notice] [pid 5015] ModSecurity: APR compiled version="1.7.0"; loaded
> version="1.7.0"
> [:notice] [pid 5015] ModSecurity: PCRE compiled version="8.44 "; loaded
> version="8.44 2020-02-12"
> [:notice] [pid 5015] ModSecurity: LIBXML compiled version="2.9.10"
> [:notice] [pid 5015] ModSecurity: Status engine is currently disabled,
> enable it by set SecStatusEngine to On.
> [mpm_prefork:notice] [pid 5016] AH00163: Apache/2.4.46 (Unix)
> OpenSSL/1.1.1g PHP/7.4.11 configured -- resuming normal operations
> Wed Dec 02 20:38:26.746392 2020] [core:notice] [pid 5016] AH00094: Command
> line: '/usr/sbin/apache2 -D DEFAULT_VHOST -D INFO -D SSL -D
> SSL_DEFAULT_VHOST -D LANGUAGE -D PHP -D SECURITY -d /usr/lib64/apache2 -f
> /etc/apache2/httpd.conf'
> [authz_core:error] [pid 4900] [client ::1:46226] AH01630: client denied by
> server configuration: /usr/local/sql-ledger/index.html
>
>
> The above error log entry has nothing to with the below configuration
> except the last line:
> [authz_core:error] [pid 4900] [client ::1:46226] AH01630: client denied by
> server configuration: /usr/local/sql-ledger/index.html
>
> My sql-ledger_apache.config  2.4 config
>
> Alias /sql-ledger /usr/local/sql-ledger/
> 
>   AllowOverride All
>   AddHandler cgi-script .pl
>   AddDefaultCharset On
>   Options ExecCGI Includes FollowSymlinks
>   Require ip 10.0.0.109
> 
>
> 
>   Require all denied
> 
>
> All the configuration entries are in main server (not in .htaccess)
>
> --
> Thelma
>
>


[gentoo-user] Another apache 2.4 - Forbidden: You don't have permission to access this resource.

2020-12-02 Thread thelma
When I try to configure sql-ledger, /localhost/sql-ledger/index.html 
I get an error:  Forbidden: You don't have permission to access this resource.

Apache starts normally but there is an entry in /var/logs/apache/error_log  
(how to make it go way)

[:notice] [pid 5015] ModSecurity for Apache/2.9.3 (http://www.modsecurity.org/) 
configured.
[:notice] [pid 5015] ModSecurity: APR compiled version="1.7.0"; loaded 
version="1.7.0"
[:notice] [pid 5015] ModSecurity: PCRE compiled version="8.44 "; loaded 
version="8.44 2020-02-12"
[:notice] [pid 5015] ModSecurity: LIBXML compiled version="2.9.10"
[:notice] [pid 5015] ModSecurity: Status engine is currently disabled, enable 
it by set SecStatusEngine to On.
[mpm_prefork:notice] [pid 5016] AH00163: Apache/2.4.46 (Unix) OpenSSL/1.1.1g 
PHP/7.4.11 configured -- resuming normal operations
Wed Dec 02 20:38:26.746392 2020] [core:notice] [pid 5016] AH00094: Command 
line: '/usr/sbin/apache2 -D DEFAULT_VHOST -D INFO -D SSL -D SSL_DEFAULT_VHOST 
-D LANGUAGE -D PHP -D SECURITY -d /usr/lib64/apache2 -f /etc/apache2/httpd.conf'
[authz_core:error] [pid 4900] [client ::1:46226] AH01630: client denied by 
server configuration: /usr/local/sql-ledger/index.html


The above error log entry has nothing to with the below configuration except 
the last line:
[authz_core:error] [pid 4900] [client ::1:46226] AH01630: client denied by 
server configuration: /usr/local/sql-ledger/index.html

My sql-ledger_apache.config  2.4 config

Alias /sql-ledger /usr/local/sql-ledger/

  AllowOverride All
  AddHandler cgi-script .pl
  AddDefaultCharset On
  Options ExecCGI Includes FollowSymlinks
  Require ip 10.0.0.109



  Require all denied


All the configuration entries are in main server (not in .htaccess)

-- 
Thelma