I'm going to have Apache running here on my LAN, and just want to be sure, before it goes live, that all security holes are plugged (the known ones, anyway). Anyone know some good links I can read to make sure I have this thing buttoned down?
while researching how to get surgemail webmail running on my server alongside apache, surgemail suggested doing a ProxyPass...which requires a proxy module to be loaded. Another site I went to said that using Proxy might not be such a good idea in terms of security. http://httpd.apache.org/docs/1.3/mod/mod_proxy.html#proxyrequests
granted it looks like those come from the 1.3 version of apache and I run 2.0.5...I'm still going to steer away from it.