Comment by ajsnigrutin
1 day ago
How do these configs differ to server defaults? If some really bad settings are enabled by default (thus needing this custom config), shouldn't it be better just to have the server-software devs fix the defaults to be 'good enough' (for most)?
Great question. Servers should ship with secure defaults.