Disabling the X-Powered-By flag
If your organization is concerned that the X-Powered-By flag in the header variable is a security risk, you can disable it using this procedure.
Procedure
- If you are using WebLogic, in the administration console, under X-Powered-By Header to X-Powered-By Header will not be sent. , set
-
If you are using WebSphere®, perform the following steps.
- In the WebSphere administration console, navigate to .
- Under Additional Properties select Custom Properties.
- On the Custom Properties page, click New.
- On the Settings page, create a custom property named com.ibm.ws.webcontainer.disablexPoweredBy and set the value to false.
- Click Apply or OK.
- Click Save on the console task bar to save your configuration changes.
- Restart the server.