当前位置: 首页 > 工具软件 > Restler > 使用案例 >

如果php还没不加 %3e,如果index.php未包含在URL中,则Restler会返回404状态码

司徒高丽
2023-12-01

如果我们将“index.php”文件添加到url,标题很好!

尝试:

访问/index.php/sandbox/about/products/en.json(使用相同的GET变量)

这是我的Restler根目录的详细.HTACCESS文件:## Can be commented out if causes errors.

Options +FollowSymLinks

RewriteEngine On

## Begin - Rewrite rules to block out some common exploits.

# If you experience problems on your site block out the operations listed below

# This attempts to block the most common type of exploit `attempts` to Joomla!

#

# Block out any script trying to base64_encode data within the URL.

RewriteCond %{QUERY_STRING} base64_encode[^(]*\([^)]*\) [OR]

# Block out any script that includes a

RewriteCond %{QUERY_STRING} (<|%3C)([^s]*s)+cript.*(>|%3E) [NC,OR]

# Block out any script trying to set a PHP GLOBALS variable via URL.

RewriteCond %{QUERY_STRING} GLOBALS(=|\[|\%[0-9A-Z]{0,2}) [OR]

# Block out any script trying to modify a _REQUEST variable via URL.

RewriteCond %{QUERY_STRING} _REQUEST(=|\[|\%[0-9A-Z]{0,2})

# Return 403 Forbidden header and show the content of the root homepage

RewriteRule .* index.php [F]

#

## End - Rewrite rules to block out some common exploits.

##

# Uncomment following line if your webserver's URL

# is not directly related to physical file paths.

# Update Your API Directory (just / for root).

##

RewriteBase /

#

RewriteRule .* - [E=HTTP_AUTHORIZATION:%{HTTP:Authorization}]

#

# If the requested path and file is not /index.php and the request

# has not already been internally rewritten to the index.php script

RewriteCond %{REQUEST_URI} !^/index\.php

# and the request is for something within the reg server folder,

# or for the site root, or for an extensionless URL, or the

# requested URL ends with one of the listed extensions

RewriteCond %{REQUEST_URI} /server/|(/[^.]*|\.(php|html?|json|xml|feed|pdf|vcf|raw))$ [NC]

# and the requested path and file doesn't directly match a physical file

RewriteCond %{REQUEST_FILENAME} !-f

# and the requested path and file doesn't directly match a physical folder

RewriteCond %{REQUEST_FILENAME} !-d

# internally rewrite the request to the index.php script

RewriteRule ^.*$ index.php [QSA,L]

#

为了保护Restler框架,Restler库文件不可用于Web,并且API_ROOT / index.php文件使用“require_once”命令自动包含它们。

请告知如何使该设置按预期工作?

 类似资料: