Uploaded image for project: 'ZooKeeper'
  1. ZooKeeper
  2. ZOOKEEPER-3772

JettyAdminServer should not allow HTTP TRACE method

    XMLWordPrintableJSON

Details

    Description

      When I upgrade my zookeeper cluster to 3.5.7, a nessus scan pinged the cluster because the 8080 port of JettyAdminServer allows HTTP TRACE method.

      Attachments

        1. ZOOKEEPER-3772-1.patch
          4 kB
          Jinjiang Ling

        Activity

          People

            Unassigned Unassigned
            lingjinjiang Jinjiang Ling
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Time Tracking

                Estimated:
                Original Estimate - Not Specified
                Not Specified
                Remaining:
                Remaining Estimate - 0h
                0h
                Logged:
                Time Spent - 3h
                3h