Forums de discussion
URL method whitelisting
Ramchand Gururajan, modifié il y a 8 années.
URL method whitelisting
Junior Member Publications: 33 Date d'inscription: 05/04/16 Publications récentes
Hi All,
We have security recommendation to set by our security team who have asked to blacklist all the urls & methods(POST/GET/PUT/HEAD/DELETE/OPTION) via webserver & allow only those minimal url / methods which are required for application to work fine.
It would be great if any body has done the same or would share the set of minimal urls for whitelisting.
regards,
Ramchand.
We have security recommendation to set by our security team who have asked to blacklist all the urls & methods(POST/GET/PUT/HEAD/DELETE/OPTION) via webserver & allow only those minimal url / methods which are required for application to work fine.
It would be great if any body has done the same or would share the set of minimal urls for whitelisting.
regards,
Ramchand.
Tomas Polesovsky, modifié il y a 7 années.
RE: URL method whitelisting
Liferay Master Publications: 676 Date d'inscription: 13/02/09 Publications récentes
Hi,
there is no such whitelist. Every portal deployment use different scenarios.
there is no such whitelist. Every portal deployment use different scenarios.