请问如何屏蔽掉系统的信息呢?

请问如何屏蔽掉系统的信息呢?

回家用xscan扫描公司网站,发现提示          www (80/tcp)
开放服务

"WEB"服务运行于该端口
BANNER信息 :

HTTP/1.1 200 OK
Date: Sun, 20 Apr 2008 02:00:11 GMT
Server: Apache/2.0.55 (Unix) PHP/5.0.5
X-Powered-By: PHP/5.0.5
Set-Cookie: PHPSESSID=lpurpjtb9a7gg6qsh1tv0jpd90
path=/
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Content-Type: text/html

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"

请教能否屏蔽掉这些信息呢?
ServerTokens Prod
ServerSignature Off
已经加了这两个选项,再次扫描,依然可以看到:
提示 www (80/tcp) 开放服务

"WEB"服务运行于该端口
BANNER信息 :

HTTP/1.1 200 OK
Date: Tue, 22 Apr 2008 09:21:02 GMT
Server: Apache
X-Powered-By: PHP/5.0.5
Set-Cookie: PHPSESSID=av09h87vmvnhg9n67943chn422
path=/
Expires: Thu, 19 Nov 1981 08:52:00 GMT
Cache-Control: no-store, no-cache, must-revalidate, post-check=0, pre-check=0
Pragma: no-cache
Connection: close
Content-Type: text/html

<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="ht
NESSUS_ID : 10330
还可以来一个
expose_php = Off


QUOTE:
原帖由 harbinbeer 于 2008-4-22 22:07 发表
还可以来一个
expose_php = Off

这个是在httpd.conf里面改吗?