Uploaded image for project: 'Sling'
  1. Sling
  2. SLING-6937

Referrer Filter: Allow Regex User Agent Exclusions

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Major
    • Resolution: Fixed
    • Security 1.1.2
    • Security 1.1.4
    • Extensions
    • None

    Description

      For some cases it would be desirable to skip the referrer check altogether for certain resource paths, instead of simply setting "Allow Empty Referrer", thus weakening the security overall instead of only for a well known set of paths for which it would be desirable.

      For this reason i'd like to propose adding a path whitelist to the referrer filter configuration. Patch attached.

      Attachments

        Activity

          People

            asanso Antonio Sanso
            dominique.jaeggi Dominique Jäggi
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: