Tools
Hide Serv-U version information from Headers and Responses
This article explains how to hide Serv-U version information from headers and responses to improve server security.
First published date
Last published date
Overview
Serv-U includes a feature that allows administrators to hide the version information displayed in FTP and SFTP responses, helping enhance overall server security. By preventing version details from appearing in server headers or responses, you reduce the amount of information exposed to potential attackers. This practice is part of a broader security approach that focuses on limiting system details that could otherwise be used to exploit known vulnerabilities.
Product section
Resolution
The version information of Serv-U can be hidden from headers and responses while using the FTP or the SFTP protocol.
To hide the version information when using the FTP protocol:
- Navigate to your server or domain in the Management Console.
- Navigate to Limits & Settings > FTP Settings.
- Click Global Properties.
- Select Code 220, and then click Edit.
- Edit the text according to the amount of information you want to display, and then click Save.
- Click Save again on the FTP Command Properties dialog.
To hide the version information when using SFTP protocol:
- Navigate to your server or domain in the Management Console.
- Navigate to Limits & Settings > Settings.
- Select "Hide server information from SSH identity" in the Connection Settings grouping.
- Click Save.
To hide the version information in HTTP and HTTPS response headers:
- Navigate to your server or domain in the Management Console.
- Navigate to Limits & Settings > Limits.
- Select HTTP from the Limit Type list.
- Click Add, and then select "Hide Serv-U version information in HTTP response headers" from the list.
- Select the corresponding check box, and then click Save.