[users@httpd] Can't restrict file access

2014-04-04 Thread D'Arcy J.M. Cain
I just noticed that files that should be blocked can easily be seen on my server. I have the following code in my httpd.conf yes anyone can view my svn repository or read my .htaccess files. I think that the first one was actually part of the sample config from Apache. Can anyone see a problem?

Re: [users@httpd] Can't restrict file access

2014-04-04 Thread Eric Covener
Maybe you have a Location covering the same space with other access control? If you overlap directory/files with location, bad things happen. On Fri, Apr 4, 2014 at 8:38 AM, D'Arcy J.M. Cain da...@vex.net wrote: I just noticed that files that should be blocked can easily be seen on my server.

Re: [users@httpd] Can't restrict file access

2014-04-04 Thread D'Arcy J.M. Cain
On Fri, 4 Apr 2014 08:44:02 -0400 Eric Covener cove...@gmail.com wrote: Maybe you have a Location covering the same space with other access control? If you overlap directory/files with location, bad things happen. Someone pointed out that the config directives changed in 2.4. This is what I

Re: [users@httpd] Can't restrict file access

2014-04-04 Thread D'Arcy J.M. Cain
On Fri, 4 Apr 2014 10:09:48 -0400 D'Arcy J.M. Cain da...@vex.net wrote: Directory ~ ^\.svn Require all denied /Directory This doesn't work. I believe that this is because I have other Directory directives that override it. Would the above work if changed Directory to a Location