{"id":26375,"date":"2012-05-18T12:24:33","date_gmt":"2012-05-18T06:54:33","guid":{"rendered":"https:\/\/www.quickonlinetips.com\/archives\/?p=26375"},"modified":"2020-05-22T17:24:14","modified_gmt":"2020-05-22T11:54:14","slug":"turn-off-server-signature","status":"publish","type":"post","link":"https:\/\/www.quickonlinetips.com\/archives\/2012\/05\/turn-off-server-signature\/","title":{"rendered":"Turn Off Server Signature for Better Server Security"},"content":{"rendered":"<p>Do you turn off server signature for better site security? Just like you turned off the visibility of your WordPress version, why do you want hackers to know about your server signature which clearly displays your private server details like your Apache version.<\/p>\n<h3>Server Signature<\/h3>\n<p>It is very easy for anyone to view your Apache versions and other installed critical software on your server, and if you don&#8217;t upgrade your server software like Apache to the latest versions, and fail to fix security issues which these upgrades fix, then you don&#8217;t want anyone online to be aware about your server details. Any simple online tool will show\u00a0<a href=\"http:\/\/www.whatsmyip.org\/http-response-headers\/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">HTTP site headers<\/a> of any site. This is a sample site I checked.<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-26385\" title=\"server-signature-on\" alt=\"server signature on\" src=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-on.png\" width=\"404\" height=\"81\" srcset=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-on.png 404w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-on-300x60.png 300w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-on-50x10.png 50w\" sizes=\"(max-width: 404px) 100vw, 404px\" \/><\/p>\n<p>As you can see it is very easy to see all the server details, and hackers can get a good idea about servers which haven&#8217;t been upgraded to the latest software versions, which means to say that your server is not adequately patched with security fixes and is prone to hacking.<\/p>\n<h3>Turn off server signature<\/h3>\n<p>So if you want to quickly check if your site hosting server is revealing your server signature to the world, simply use this site to\u00a0<a href=\"http:\/\/www.seositecheckup.com\/tool\/server_signature\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">check server signature<\/a>\u00a0\u00a0and you can find out if your server signature is off. It is a good idea to turn off your server signature for better site security.<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-26389\" title=\"check-server-signature\" alt=\"check server signature\" src=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/check-server-signature.png\" width=\"402\" height=\"114\" srcset=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/check-server-signature.png 402w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/check-server-signature-150x42.png 150w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/check-server-signature-300x85.png 300w\" sizes=\"(max-width: 402px) 100vw, 402px\" \/><\/p>\n<p>How do you turn off server signature? Well we got our <a href=\"https:\/\/www.quickonlinetips.com\/archives\/2011\/07\/knownhost-vps-hosting-review\/\">amazing hosting service<\/a> provider Knownhost to fix the issue. Our hosting service fixed the issue after we sent them an support request quickly.\u00a0Probably if you are an expert in managing servers (like many amazing QOT readers!), you can fix it yourself.<\/p>\n<p>They informed me that they added the following values in the Apache configuration file to switch off the Server Signature.<br \/>\n<em>ServerSignature Off<\/em><br \/>\n<em>ServerTokens ProductOnly<\/em><\/p>\n<p>If you login to WHM \u00a0&gt; Service Configuration &gt; Apache Configuration<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-26431\" title=\"server-signature-options\" alt=\"server signature options\" src=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-options.png\" width=\"443\" height=\"152\" border=\"1\" srcset=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-options.png 443w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-options-300x102.png 300w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-options-50x17.png 50w\" sizes=\"(max-width: 443px) 100vw, 443px\" \/><\/p>\n<p>Now with the server signature off, see how your HTTP site headers will look like.if<\/p>\n<p><img decoding=\"async\" class=\"alignnone size-full wp-image-26386\" title=\"server-signature-off\" alt=\"server signature off\" src=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-off.png\" width=\"299\" height=\"77\" srcset=\"https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-off.png 299w, https:\/\/www.quickonlinetips.com\/archives\/wp-content\/uploads\/server-signature-off-50x12.png 50w\" sizes=\"(max-width: 299px) 100vw, 299px\" \/><\/p>\n<p>I just browsed the server details of several top websites, surprisingly which are running on very old software versions! So what are you waiting for, if \u00a0went ahead to\u00a0<a href=\"https:\/\/www.quickonlinetips.com\/archives\/2007\/01\/security-update-everyone-knows-your-wordpress-version\/\">hide WordPress version<\/a>, then you should go ahead and switch off server signature right now for better server security and site safety.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Do you turn off server signature for better site security? Just like you turned off the visibility of your WordPress&#8230;<\/p>\n","protected":false},"author":4,"featured_media":26389,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_kad_post_transparent":"","_kad_post_title":"","_kad_post_layout":"","_kad_post_sidebar_id":"","_kad_post_content_style":"","_kad_post_vertical_padding":"","_kad_post_feature":"","_kad_post_feature_position":"","_kad_post_header":false,"_kad_post_footer":false,"_kad_post_classname":"","footnotes":""},"categories":[25,7,41],"tags":[],"class_list":["post-26375","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-domain-hosting","category-security","category-search-engine-optimization"],"_links":{"self":[{"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/posts\/26375","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/comments?post=26375"}],"version-history":[{"count":0,"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/posts\/26375\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/media\/26389"}],"wp:attachment":[{"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/media?parent=26375"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/categories?post=26375"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.quickonlinetips.com\/archives\/wp-json\/wp\/v2\/tags?post=26375"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}