| Current Path : /home/jcjack6/dantealighieriofdenver.com/ |
| Current File : /home/jcjack6/dantealighieriofdenver.com/.htaccess |
### ===========================================================================
### Security Enhanced & Highly Optimized .htaccess File for Joomla!
### automatically generated by Admin Tools 7.8.9 on 2026-07-25 14:56:50 MDT
### Auto-detected Apache version: 2.5 (best guess)
### ===========================================================================
###
### The contents of this file are based on the same author's work "Master
### .htaccess".
###
### Admin Tools is Free Software, distributed under the terms of the GNU
### General Public License version 3 or, at your option, any later version
### published by the Free Software Foundation.
###
### !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! IMPORTANT !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
### !! !!
### !! If you get an Internal Server Error 500 or a blank page when trying !!
### !! to access your site, remove this file and try tweaking its settings !!
### !! in the back-end of the Admin Tools component. !!
### !! !!
### !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
###
##### RewriteEngine enabled - BEGIN
RewriteEngine On
##### RewriteEngine enabled - END
# PHP FastCGI fix for HTTP Authorization
RewriteRule .* - [E=HTTP_AUTHORIZATION:%{HTTP:Authorization}]
##### Common hacking tools and bandwidth hoggers block -- BEGIN
RewriteCond %{HTTP_USER_AGENT} "acapbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "acoonbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "acunetix" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "ahrefs" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "alexibot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "archiver" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "asterias" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "attackbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "awario" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "backdor" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "base64_decode" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "becomebot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "bin/bash" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "binlar" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "blackwidow" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "blekkobot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "blex" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "blowfish" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "bolt 0" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "bot for jce" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "bot mailto:craftbot@yahoo.com" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "bullseye" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "bunnys" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "butterfly" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "c99shell" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "careerbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "casper" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "casper" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "cazoodlebot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "checkpriv" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "checkprivacy" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "cheesebot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "cherrypick" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "chinaclaw" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "chinaclaw" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "choppy" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "clshttp" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "clshttp" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "cmsworld" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "cmsworldmap" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "comodo" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "copernic" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "copyrightcheck" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "cosmos" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "crescent" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "custo" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "datacha" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "default browser 0" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "demon" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "diavol" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "diibot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "disco" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "discobot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "disconnect" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "dittospyder" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "dotbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "dotnetdotcom" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "download demon" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "dumbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "ecatch" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "econtext" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "ecxi" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "eirgrabber" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "emailcollector" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "emailsiphon" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "emailwolf" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "eolasbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "eval" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "eventures" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "express webpictures" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "extract" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "extractorpro" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "eyenetie" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "feedfinder" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "fhscan" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "flaming" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "flashget" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "flicky" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "foobot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "fuck" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "g00g1e" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "getright" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "getweb!" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "gigabot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "go!zilla" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "go-ahead-got" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "go-ahead-got-it" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "gozilla" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "grab" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "grabnet" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "grafula" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "gt::www" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "harvest" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "heritrix" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "hmview" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "http::lite" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "httrack" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "httracks" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "ia_archiver" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "icarus6j" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "id-search" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "id-search.org" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "idbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "image stripper" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "image sucker" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "indy library" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "interget" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "internet ninja" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "internetseer.com" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "irlbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "isc systems irc search 2.1" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "jakarta" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "java" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "jetbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "jetcar" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "jikespider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "joc web spider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "kmccrew" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "larbin" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "leechftp" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "libweb" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "libwww" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "libwww-perl" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "liebaofast" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "linkscan" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "linksmanager.com_bot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "linkwalker" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "loader" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "lwp-download" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "lwp-trivial" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "majestic" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "mass downloader" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "masscan" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "maxthon$" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "mechanize" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "mfc_tear_sample" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "microsoft url control" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "microsoft.url" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "midown tool" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "miner" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "missigua locator" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "mister pix" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "mj12bot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "morfeus" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "moveoverbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "msfrontpage" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "navroad" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "nearsite" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "net vampire" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "netants" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "netmechanic" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "netspider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "netzip" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "newt" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "nicerspro" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "nikto" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "ninja" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "nominet" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "nutch" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "octopus" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "offline explorer" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "offline navigator" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "pagegrabber" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "panscient.com" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "papa foto" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "pavuk" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "pcbrowser" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "pecl::http" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "peoplepal" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "petalbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "phpcrawl" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "phpshell" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "planetwork" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "pleasecrawl" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "postrank" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "proximic" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "psbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "purebot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "queryn" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "queryseeker" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "radian6" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "radiation" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "realdownload" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "reget" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "remoteview" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "rippers 0" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "rogerbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sbider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "scan" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "scooter" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "seamonkey$" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "seekerspid" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "semalt" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "siclab" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sindice" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sistrix" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sitebot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sitecheck.internetseer.com" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sitecopier" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "siteexplorer" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sitesnagger" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "skygrid" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "smartdownload" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "snoopy" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sosospider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "spankbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "spbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sqlmap" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "stackrambler" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "steeler" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "stripper" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sucker" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "superbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "superhttp" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "surfbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "surftbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "sux0r" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "suzukacz" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "suzuran" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "takeout" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "teleport" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "teleport pro" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "telesoft" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "toata dragostea mea pentru diavola" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "true_robots" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "turingos" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "turnit" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "turnitinbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "unserializ" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "uri::fetch" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "urllib" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "vampire" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "vikspider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "voideye" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "web image collector" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "web sucker" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webalta" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webauto" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webbandit" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webcollage" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webcopier" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webfetch" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webgo is" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webleacher" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webreaper" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "websauger" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webshell" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "website extractor" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "website quester" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webstripper" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webvac" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webviewer" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webwhacker" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "webzip" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "wells search ii" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "wep search" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "widow" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "winhttp" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "woxbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "www-mechanize" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "wwwoffle" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "xaldon" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "xaldon webspider" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "xxxyy" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "yamanalab" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "yioopbot" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "youda" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "zermelo" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "zeus" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "zmeu" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "zune" [NC] [OR]
RewriteCond %{HTTP_USER_AGENT} "zyborg" [NC]
RewriteRule ^ - [F,L]
##### Common hacking tools and bandwidth hoggers block -- END
##### RewriteBase set - BEGIN
RewriteBase /
##### RewriteBase set - END
##### HTTP to HTTPS redirection
## Since you have enabled HSTS the first redirection rule will instruct the browser to visit the HTTPS version of your
## site. This prevents unsafe redirections through HTTP.
RewriteCond %{HTTPS} !=on
RewriteCond %{HTTP:X-Forwarded-Proto} !=https
RewriteRule .* https://dantealighieriofdenver.com%{REQUEST_URI} [L,R=301]
##### File execution order -- BEGIN
DirectoryIndex index.php index.html
##### File execution order -- END
##### Follow symlinks -- BEGIN
##### Follow symlinks -- END
##### Optimal default expiration time - BEGIN
<IfModule mod_expires.c>
# Enable expiration control
ExpiresActive On
# No caching for specific resource types
## -- Application cache manifest
ExpiresByType text/cache-manifest "now"
## -- XML and JSON
ExpiresByType application/json "now"
ExpiresByType application/xml "now"
ExpiresByType text/xml "now"
## RSS and Atom feeds: 1 hour (hardcoded)
ExpiresByType application/atom+xml "now plus 1 hour"
ExpiresByType application/rss+xml "now plus 1 hour"
# CSS and JS expiration: 1 year after request
ExpiresByType text/css "now plus 1 year"
ExpiresByType text/javascript "now plus 1 year"
ExpiresByType application/javascript "now plus 1 year"
ExpiresByType application/ld+json "now plus 1 year"
ExpiresByType application/x-javascript "now plus 1 year"
# Image files expiration: 1 year after request
ExpiresByType application/ico "now plus 1 year"
ExpiresByType application/smil "now plus 1 year"
ExpiresByType application/vnd.wap.wbxml "now plus 1 year"
ExpiresByType image/bmp "now plus 1 year"
ExpiresByType image/gif "now plus 1 year"
ExpiresByType image/ico "now plus 1 year"
ExpiresByType image/icon "now plus 1 year"
ExpiresByType image/jp2 "now plus 1 year"
ExpiresByType image/jpeg "now plus 1 year"
ExpiresByType image/jpg "now plus 1 year"
ExpiresByType image/pipeg "now plus 1 year"
ExpiresByType image/png "now plus 1 year"
ExpiresByType image/svg+xml "now plus 1 year"
ExpiresByType image/tiff "now plus 1 year"
ExpiresByType image/vnd.microsoft.icon "now plus 1 year"
ExpiresByType image/vnd.wap.wbmp "now plus 1 year"
ExpiresByType image/webp "now plus 1 year"
ExpiresByType image/x-icon "now plus 1 year"
ExpiresByType text/ico "now plus 1 year"
# Font files expiration: 1 year after request
ExpiresByType application/font-woff "now plus 1 year"
ExpiresByType application/font-woff2 "now plus 1 year"
ExpiresByType application/vnd.ms-fontobject "now plus 1 year"
ExpiresByType application/x-font-opentype "now plus 1 year"
ExpiresByType application/x-font-ttf "now plus 1 year"
ExpiresByType application/x-font-woff "now plus 1 year"
ExpiresByType font/opentype "now plus 1 year"
ExpiresByType font/otf "now plus 1 year"
ExpiresByType font/ttf "now plus 1 year"
ExpiresByType font/woff "now plus 1 year"
ExpiresByType font/woff2 "now plus 1 year"
# Audio files expiration: 1 year after request
ExpiresByType application/ogg "now plus 1 year"
ExpiresByType audio/3gpp "now plus 1 year"
ExpiresByType audio/3gpp2 "now plus 1 year"
ExpiresByType audio/aac "now plus 1 year"
ExpiresByType audio/basic "now plus 1 year"
ExpiresByType audio/mid "now plus 1 year"
ExpiresByType audio/midi "now plus 1 year"
ExpiresByType audio/mp3 "now plus 1 year"
ExpiresByType audio/mpeg "now plus 1 year"
ExpiresByType audio/ogg "now plus 1 year"
ExpiresByType audio/opus "now plus 1 year"
ExpiresByType audio/x-aiff "now plus 1 year"
ExpiresByType audio/x-mpegurl "now plus 1 year"
ExpiresByType audio/x-pn-realaudio "now plus 1 year"
ExpiresByType audio/x-wav "now plus 1 year"
ExpiresByType audio/wav "now plus 1 year"
# Movie files expiration: 1 year after request
ExpiresByType application/x-shockwave-flash "now plus 1 year"
ExpiresByType video/3gpp "now plus 1 year"
ExpiresByType video/3gpp2 "now plus 1 year"
ExpiresByType video/mp4 "now plus 1 year"
ExpiresByType video/mpeg "now plus 1 year"
ExpiresByType video/ogg "now plus 1 year"
ExpiresByType video/quicktime "now plus 1 year"
ExpiresByType video/webm "now plus 1 year"
ExpiresByType video/x-la-asf "now plus 1 year"
ExpiresByType video/x-ms-asf "now plus 1 year"
ExpiresByType video/x-msvideo "now plus 1 year"
ExpiresByType x-world/x-vrml "now plus 1 year"
</IfModule>
# Disable caching of administrator/index.php
<Files "administrator/index.php">
<IfModule mod_expires.c>
ExpiresActive Off
</IfModule>
<IfModule mod_headers.c>
Header unset ETag
Header set Cache-Control "max-age=0, no-cache, no-store, must-revalidate"
Header set Pragma "no-cache"
Header set Expires "Wed, 11 Jan 1984 05:00:00 GMT"
</IfModule>
</Files>
##### Optimal default expiration time - END
##### Automatic compression of resources -- BEGIN
# Automatically serve .css.gz, .css.br, .js.gz or .js.br instead of the original file
# These are versions of the files pre-compressed with GZip or Brotli, respectively
<IfModule mod_headers.c>
# Serve Brotli compressed CSS files if they exist and the client accepts Brotli.
RewriteCond "%{HTTP:Accept-encoding}" "br"
RewriteCond "%{REQUEST_FILENAME}\.br" -s
RewriteRule "^(.*)\.css" "$1\.css\.br" [QSA]
# Serve Brotli compressed JS files if they exist and the client accepts Brotli.
RewriteCond "%{HTTP:Accept-encoding}" "br"
RewriteCond "%{REQUEST_FILENAME}\.br" -s
RewriteRule "^(.*)\.js" "$1\.js\.br" [QSA]
# Serve correct content types, and prevent double compression.
RewriteRule "\.css\.br$" "-" [T=text/css,E=no-gzip:1,E=no-brotli:1,L]
RewriteRule "\.js\.br$" "-" [T=text/javascript,E=no-gzip:1,E=no-brotli:1,L]
<FilesMatch "(\.js\.br|\.css\.br)$">
# Serve correct encoding type.
Header set Content-Encoding br
# Force proxies to cache gzipped & non-gzipped css/js files separately.
Header append Vary Accept-Encoding
</FilesMatch>
# Serve gzip compressed CSS files if they exist and the client accepts gzip.
RewriteCond "%{HTTP:Accept-encoding}" "gzip"
RewriteCond "%{REQUEST_FILENAME}\.gz" -s
RewriteRule "^(.*)\.css" "$1\.css\.gz" [QSA]
# Serve gzip compressed JS files if they exist and the client accepts gzip.
RewriteCond "%{HTTP:Accept-encoding}" "gzip"
RewriteCond "%{REQUEST_FILENAME}\.gz" -s
RewriteRule "^(.*)\.js" "$1\.js\.gz" [QSA]
# Serve correct content types, and prevent mod_filter double gzip.
# Also set it as the last rule to prevent the Front- or Backend protection from preventing access to the .gz file.
RewriteRule "\.css\.gz$" "-" [T=text/css,E=no-gzip:1,E=no-brotli:1,L]
RewriteRule "\.js\.gz$" "-" [T=text/javascript,E=no-gzip:1,E=no-brotli:1,L]
<FilesMatch "(\.js\.gz|\.css\.gz)$">
# Serve correct encoding type.
Header set Content-Encoding gzip
# Force proxies to cache gzipped & non-gzipped css/js files separately.
Header append Vary Accept-Encoding
</FilesMatch>
</IfModule>
## Automatically compress by MIME type using mod_brotli. Takes priority due to better compression ratio.
<IfModule mod_brotli.c>
AddOutputFilterByType BROTLI_COMPRESS text/plain text/xml text/css application/xml application/xhtml+xml application/rss+xml application/javascript application/x-javascript text/javascript image/svg+xml
</IfModule>
## Automatically compress by MIME type using mod_filter.
<IfModule mod_filter.c>
AddOutputFilterByType DEFLATE text/plain text/xml text/css application/xml application/xhtml+xml application/rss+xml application/javascript application/x-javascript text/javascript image/svg+xml
</IfModule>
## Fallback to mod_gzip when neither mod_brotli nor mod_filter is available
<IfModule !mod_brotli.c>
<IfModule !mod_filter.c>
<IfModule mod_gzip.c>
mod_gzip_on Yes
mod_gzip_dechunk Yes
mod_gzip_keep_workfiles No
mod_gzip_can_negotiate Yes
mod_gzip_add_header_count Yes
mod_gzip_send_vary Yes
mod_gzip_min_http 1000
mod_gzip_minimum_file_size 300
mod_gzip_maximum_file_size 512000
mod_gzip_maximum_inmem_size 60000
mod_gzip_handle_methods GET
mod_gzip_item_include file \.(html?|txt|css|js|php|pl|xml|rb|py|svg|scgz)$
mod_gzip_item_include mime ^text/javascript$
mod_gzip_item_include mime ^text/plain$
mod_gzip_item_include mime ^text/xml$
mod_gzip_item_include mime ^text/css$
mod_gzip_item_include mime ^application/xml$
mod_gzip_item_include mime ^application/xhtml+xml$
mod_gzip_item_include mime ^application/rss+xml$
mod_gzip_item_include mime ^application/javascript$
mod_gzip_item_include mime ^application/x-javascript$
mod_gzip_item_include mime ^image/svg+xml$
mod_gzip_item_exclude rspheader ^Content-Encoding:.*gzip.*
mod_gzip_item_include handler ^cgi-script$
mod_gzip_item_include handler ^server-status$
mod_gzip_item_include handler ^server-info$
mod_gzip_item_include handler ^application/x-httpd-php
mod_gzip_item_exclude mime ^image/.*
</ifmodule>
</IfModule>
</IfModule>
##### Automatic compression of resources -- END
## Force GZip compression for mangled Accept-Encoding headers
<IfModule mod_setenvif.c>
<IfModule mod_headers.c>
SetEnvIfNoCase ^(Accept-EncodXng|X-cept-Encoding|X{15}|~{15}|-{15})$ ^((gzip|deflate)\s*,?\s*)+|[X~-]{4,13}$ HAVE_Accept-Encoding
RequestHeader append Accept-Encoding "gzip,deflate" env=HAVE_Accept-Encoding
</IfModule>
</IfModule>
##### Redirect www to non-www -- BEGIN
RewriteCond %{HTTP_HOST} ^www\.(.+)$ [NC]
RewriteRule ^(.*)$ https://%1/$1 [R=301,L]
##### Redirect www to non-www -- END
##### Rewrite rules to block out some common exploits -- BEGIN
RewriteCond %{QUERY_STRING} proc/self/environ [OR]
RewriteCond %{QUERY_STRING} mosConfig_[a-zA-Z_]{1,21}(=|\%3D) [OR]
RewriteCond %{QUERY_STRING} base64_(en|de)code\(.*\) [OR]
RewriteCond %{QUERY_STRING} (<|%3C).*script.*(>|%3E) [NC,OR]
RewriteCond %{QUERY_STRING} GLOBALS(=|\[|\%[0-9A-Z]{0,2}) [OR]
RewriteCond %{QUERY_STRING} _REQUEST(=|\[|\%[0-9A-Z]{0,2})
RewriteRule .* index.php [F]
##### Rewrite rules to block out some common exploits -- END
##### File injection protection -- BEGIN
RewriteCond %{REQUEST_METHOD} GET
RewriteCond %{QUERY_STRING} [a-zA-Z0-9_]=http[s]?:// [OR]
RewriteCond %{QUERY_STRING} [a-zA-Z0-9_]=(\.\.//?)+ [OR]
RewriteCond %{QUERY_STRING} [a-zA-Z0-9_]=/([a-z0-9_.]//?)+ [NC]
RewriteRule .* - [F]
##### File injection protection -- END
##### Advanced server protection rules exceptions -- BEGIN
RewriteRule ^administrator\/components\/com_akeeba\/restore\.php$ - [L]
RewriteRule ^administrator\/components\/com_akeebabackup\/restore\.php$ - [L]
RewriteRule ^administrator\/components\/com_joomlaupdate\/restore\.php$ - [L]
RewriteRule ^administrator\/components\/com_joomlaupdate\/extract\.php$ - [L]
RewriteCond %{REQUEST_FILENAME} !(\.php)$
RewriteCond %{REQUEST_FILENAME} -f
RewriteRule ^\.well\-known/ - [L]
RewriteRule ^installation/ - [L]
##### Advanced server protection rules exceptions -- END
##### Advanced server protection -- BEGIN
#### Back-end protection
RewriteRule ^administrator/?$ - [L]
RewriteRule ^administrator/index\.(php|html?)$ - [L]
RewriteRule ^administrator/(components|modules|templates)/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$ - [L,NC]
RewriteRule ^administrator/ - [F]
#### Front-end protection
## Allow limited access to additional TinyMCE plugins' HTML files
RewriteRule ^media/plg_editors_tinymce/js/plugins/.*\.(htm|html)$ - [L,NC]
## Allow limited access for certain directories with client-accessible content
RewriteRule ^(components|modules|templates|files|images|plugins|media|libraries)/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$ - [L,NC]
RewriteRule ^(components|modules|templates|files|images|plugins|media|libraries)/ - [F]
## Disallow front-end access for certain Joomla! system directories (unless access to their files is allowed above)
RewriteRule ^includes/js/ - [L]
RewriteRule ^(cache|includes|language|logs|log|tmp)/ - [F]
RewriteRule ^(configuration\.php|CONTRIBUTING\.md|htaccess\.txt|joomla\.xml|LICENSE\.txt|phpunit\.xml|README\.txt|web\.config\.txt) - [F]
## Explicitly allow access to the site's index.php main entry point file
RewriteRule ^index.php(/.*){0,1}$ - [L]
## Explicitly allow access to the API application's index.php main entry point file
RewriteRule ^api/index.php(/.*){0,1}$ - [L]
## Explicitly allow access to the site's robots.txt file
RewriteRule ^robots.txt$ - [L]
## Disallow access to all other PHP files throughout the site, unless they are explicitly allowed
RewriteCond %{REQUEST_FILENAME} (\.php)$
RewriteCond %{REQUEST_FILENAME} -f
RewriteRule (.*\.php)$ - [F]
#### Disable client-side risky behavior in backend static content
SetEnvIf Request_URI "^/administrator/(components|modules|templates)/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" disable_risky_behaviour
#### Disable client-side risky behavior in frontend static content
SetEnvIf Request_URI "^/(components|modules|templates|files|images|plugins|media|libraries)/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" disable_risky_behaviour
##### Always allow TinyMCE plugin files to load scripts (they need to)
SetEnvIf Request_URI "^/media/plg_editors_tinymce/js/plugins/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" !disable_risky_behaviour
SetEnvIf Request_URI "^/media/plg_editors_tinymce/js/plugins/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" !disable_risky_behaviour
##### Advanced server protection rules exceptions also bypass the “disable client-side risky behavior” features -- BEGIN
SetEnvIf Request_URI "^/administrator\/components\/com_akeeba\/restore\.php$" !disable_risky_behaviour
SetEnvIf Request_URI "^/administrator\/components\/com_akeebabackup\/restore\.php$" !disable_risky_behaviour
SetEnvIf Request_URI "^/administrator\/components\/com_joomlaupdate\/restore\.php$" !disable_risky_behaviour
SetEnvIf Request_URI "^/administrator\/components\/com_joomlaupdate\/extract\.php$" !disable_risky_behaviour
SetEnvIf Request_URI "^/\.well\-known/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" !disable_risky_behaviour
SetEnvIf Request_URI "^/\.well\-known/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" !disable_risky_behaviour
SetEnvIf Request_URI "^/installation/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" !disable_risky_behaviour
SetEnvIf Request_URI "^/installation/.*\.(jpe|jpg|jpeg|jp2|jpe2|png|gif|bmp|css|js|swf|html|mpg|mp3|mpeg|mp4|avi|wav|ogg|ogv|xls|xlsx|doc|docx|ppt|pptx|zip|rar|pdf|xps|txt|7z|svg|odt|ods|odp|flv|mov|htm|ttf|woff|woff2|eot|webp|ico|xsl|json|bpe)$" !disable_risky_behaviour
##### Advanced server protection rules exceptions also bypass the “disable client-side risky behavior” features -- END
# Apply the "Disable client-side risky behavior" features
Header always set Content-Security-Policy "default-src 'self'; script-src 'none';" env=disable_risky_behaviour
## Disallow access to htaccess.txt, php.ini, .user.ini and configuration.php-dist
RewriteRule ^(htaccess\.txt|configuration\.php-dist|php\.ini|\.user\.ini)$ - [F]
# Disallow access to all other front-end folders
RewriteCond %{REQUEST_FILENAME} -d
RewriteCond %{REQUEST_URI} !^/
RewriteRule .* - [F]
# Disallow access to all other front-end files
RewriteCond %{REQUEST_FILENAME} -f
RewriteRule !^index.php$ - [F]
## Remove Apache and PHP version signature
<IfModule mod_headers.c>
Header always unset X-Powered-By
Header always unset X-Content-Powered-By
</IfModule>
ServerSignature Off
##### Advanced server protection -- END
## HSTS Header - See http://en.wikipedia.org/wiki/HTTP_Strict_Transport_Security
<IfModule mod_headers.c>
SetEnvIfExpr "%{HTTPS}='on'" USE_HSTS_HEADER
SetEnvIf X-Forwarded-Proto "https" USE_HSTS_HEADER
Header always set Strict-Transport-Security "max-age=31536000" env=USE_HSTS_HEADER
</IfModule>
## Referrer-policy
<IfModule mod_headers.c>
Header always set Referrer-Policy "unsafe-url"
</IfModule>
##### Joomla! core SEF Section -- BEGIN
# -- SEF URLs for the API application
RewriteCond %{REQUEST_URI} ^/api/
RewriteCond %{REQUEST_URI} !^/api/index\.php
RewriteCond %{REQUEST_FILENAME} !-f
RewriteCond %{REQUEST_FILENAME} !-d
RewriteRule .* api/index.php [L]
# -- SEF URLs for the public frontend application
##### Joomla! core SEF Section -- BEGIN
RewriteCond %{REQUEST_URI} !^/index\.php
RewriteCond %{REQUEST_FILENAME} !-f
RewriteCond %{REQUEST_FILENAME} !-d
RewriteRule .* index.php [L]
##### Joomla! core SEF Section -- END
AddHandler application/x-httpd-ea-php82 .php .php8 .phtml