25개 이상의 토픽을 선택하실 수 없습니다. Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

44 lines
1.6KB

  1. <?xml version="1.0" encoding="UTF-8"?>
  2. <configuration>
  3. <system.webServer>
  4. <!--
  5. No hiddenSegments needed here: Framework/, Controllers/, tests/,
  6. tools/, docs/, and logs/ all live as siblings OUTSIDE this "public"
  7. folder, which is IIS's entire site physical path. There is no code
  8. path by which IIS could serve them, regardless of web.config -
  9. physical separation, not a filtering rule, is what protects them. See
  10. docs/ARCHITECTURE.md / docs/DECISIONS.md. The extension denylist below
  11. is kept only as cheap defense-in-depth against a stray file someday
  12. landing directly inside public/ by mistake.
  13. -->
  14. <security>
  15. <requestFiltering>
  16. <fileExtensions>
  17. <add fileExtension=".wsc" allowed="false" />
  18. <add fileExtension=".vbs" allowed="false" />
  19. <add fileExtension=".ps1" allowed="false" />
  20. <add fileExtension=".md" allowed="false" />
  21. </fileExtensions>
  22. </requestFiltering>
  23. </security>
  24. <rewrite>
  25. <rules>
  26. <rule name="WscMvc-Hello" stopProcessing="true">
  27. <match url="^hello/?$" />
  28. <action type="Rewrite" url="Default.asp?route=/hello" appendQueryString="false" />
  29. </rule>
  30. <rule name="WscMvc-SelfTest" stopProcessing="true">
  31. <match url="^self-test/?$" />
  32. <action type="Rewrite" url="Default.asp?route=/self-test" appendQueryString="false" />
  33. </rule>
  34. </rules>
  35. </rewrite>
  36. <defaultDocument>
  37. <files>
  38. <clear />
  39. <add value="Default.asp" />
  40. </files>
  41. </defaultDocument>
  42. </system.webServer>
  43. </configuration>

Powered by TurnKey Linux.