How to modify or suppress "Server" header and "X-Powered-By" header returned by JBoss EAP 6.x

Solution Verified - Updated -


  • How to achieve the following:
    • Change Server header name.
    • Suppress X-Powered-By header.
    • Suppress server info on error responses.
  • How to remove the X-Powered-By Header in JBoss ?
  • JSP version disclosure

    While scanning the application URL, displaying jsp version as 
    X-Powered-By: JSP/2.2, please let us know how fix jsp version disclosure  findings.


  • Red Hat JBoss Enterprise Application Platform (EAP)
    • 6.x

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In