<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Insecure HTTP Methods Enabled in Operating System - HP-UX</title>
    <link>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735861#M386847</link>
    <description>HI all.&lt;BR /&gt;&lt;BR /&gt;Our web server installed in HPUX 11.23. WE need to disble the WEBDAV protocol.&lt;BR /&gt;What is the exact command?&lt;BR /&gt;</description>
    <pubDate>Mon, 10 Jan 2011 04:01:37 GMT</pubDate>
    <dc:creator>Fauziah Mahdan</dc:creator>
    <dc:date>2011-01-10T04:01:37Z</dc:date>
    <item>
      <title>Insecure HTTP Methods Enabled</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735861#M386847</link>
      <description>HI all.&lt;BR /&gt;&lt;BR /&gt;Our web server installed in HPUX 11.23. WE need to disble the WEBDAV protocol.&lt;BR /&gt;What is the exact command?&lt;BR /&gt;</description>
      <pubDate>Mon, 10 Jan 2011 04:01:37 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735861#M386847</guid>
      <dc:creator>Fauziah Mahdan</dc:creator>
      <dc:date>2011-01-10T04:01:37Z</dc:date>
    </item>
    <item>
      <title>Re:  Insecure HTTP Methods Enabled</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735862#M386848</link>
      <description>WebDAV module is dynamically included in Apache Web Server.&lt;BR /&gt;&lt;BR /&gt;So if you do not need that facility, you can start the apache server without this module.&lt;BR /&gt;&lt;BR /&gt;Basically, stop the web (apache) server, then you should comment out (use # in front of) the line that loads the module. Next start the web server and this time the module will not be loaded.&lt;BR /&gt;&lt;BR /&gt;Best regards,&lt;BR /&gt;Horia.</description>
      <pubDate>Tue, 11 Jan 2011 13:22:27 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735862#M386848</guid>
      <dc:creator>Horia Chirculescu</dc:creator>
      <dc:date>2011-01-11T13:22:27Z</dc:date>
    </item>
    <item>
      <title>Re:  Insecure HTTP Methods Enabled</title>
      <link>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735863#M386849</link>
      <description>HI,&lt;BR /&gt;Thanks for the feedback.&lt;BR /&gt;BTW I did check some say to comment the dav on when i check my hhptd.conf this is what I found&lt;BR /&gt;#DAV on&lt;BR /&gt;&lt;BR /&gt;But during penetration it sill can see all the method like post,get,head, delete,patch and etc.&lt;BR /&gt;&lt;BR /&gt;When you say to limit the load.&lt;BR /&gt;Is it to comment some item like below listing?&lt;BR /&gt;LoadModule access_module modules/mod_access.so&lt;BR /&gt;LoadModule auth_module modules/mod_auth.so&lt;BR /&gt;LoadModule auth_anon_module modules/mod_auth_anon.so&lt;BR /&gt;LoadModule auth_dbm_module modules/mod_auth_dbm.so&lt;BR /&gt;LoadModule auth_digest_module modules/mod_auth_digest.so&lt;BR /&gt;LoadModule file_cache_module modules/mod_file_cache.so&lt;BR /&gt;LoadModule echo_module modules/mod_echo.so&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;</description>
      <pubDate>Thu, 13 Jan 2011 01:13:09 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-hp-ux/insecure-http-methods-enabled/m-p/4735863#M386849</guid>
      <dc:creator>Fauziah Mahdan</dc:creator>
      <dc:date>2011-01-13T01:13:09Z</dc:date>
    </item>
  </channel>
</rss>

