SCG WS Apache

Details will be added in proper format. right now cataloguing links which can be used as references.

Misconfigurations
'''Please also mention /server-status ! '''

1. Version details disclosed in headers disable apache tokens

2. Proper SSL cipher selection Cipher orders Disable specific ciphers

3. Guidelines on how to store ssl private keys on server stuff like not to store private keys on /var/www/

4. Detailing about various authentication types

basic, digest, X509, LDAP or others.

Detailing about authoentication types and which one to use in which situation.