Our Information Security group is asking us to restrict information in the http response headers, such as internal IP addresses, internal FQDN, server version or frameworks being used.
We have Confluence setup in an evaluation environment using the built in database Tomcat web server.
I'm guessing this needs to be configured in web.xml under
C:\Program Files\Atlassian\Confluence\conf/web.xml?
Any help would be appreciated.
Online forums and learning are now in one easy-to-use experience.
By continuing, you accept the updated Community Terms of Use and acknowledge the Privacy Policy. Your public name, photo, and achievements may be publicly visible and available in search engines.