ISPConfig allows clients adding / as protected folder which results in an 500 Internal Server Error
This was reported by one of my customers so it is an issue as a client disabled their own website.
To recreate
1. add / as protected folder. This is the default value
2. add user for that protected folder
you will get
500 Internal Server Error
this is the code generated in nginx vhost
location / {
auth_basic "Members Only";
auth_basic_user_file /var/www/clients/client0/web00/web/.htpasswd;
location ~ \.php$ {
try_files /4595acee29fd8b3b6d09510f26847eae.htm @php;
}
}
Edited by Thom