X-Git-Url: https://git.immae.eu/?a=blobdiff_plain;f=.htaccess;h=9d1522dfb14544aae9c8e5398c18c33ac8290472;hb=2a20e67f760fb0587c8ea5c8219ec4546dde55bd;hp=19dd72a805e7b3bd170c87aabb25ad4764ca179a;hpb=8b48e36594394e367cbb33c7ad1a679ea57c374d;p=github%2Fshaarli%2FShaarli.git diff --git a/.htaccess b/.htaccess index 19dd72a8..9d1522df 100644 --- a/.htaccess +++ b/.htaccess @@ -6,7 +6,32 @@ RewriteEngine On # Prevent accessing subdirectories not managed by SCM RewriteRule ^(.git|doxygen|vendor) - [F] -# REST API +# Forward the "Authorization" HTTP header +# fixes JWT token not correctly forwarded on some Apache/FastCGI setups +RewriteCond %{HTTP:Authorization} ^(.*) +RewriteRule .* - [e=HTTP_AUTHORIZATION:%1] +# Alternative (if the 2 lines above don't work) +# SetEnvIf Authorization .+ HTTP_AUTHORIZATION=$0 + +# Slim URL Redirection +# Ionos Hosting needs RewriteBase / +# RewriteBase / RewriteCond %{REQUEST_FILENAME} !-f RewriteCond %{REQUEST_FILENAME} !-d RewriteRule ^ index.php [QSA,L] + + + + = 2.4> + Require all denied + + + Allow from none + Deny from all + + + + + Require all denied + +