REPO-3465 Configurable CSRF filter (#41)

CSRF filter is now configured by these props:
csrf.filter.referer=
csrf.filter.referer.always=false
csrf.filter.origin=
csrf.filter.origin.always=false

Referer and origin here is a regexp and should look like:
http://mydomain:80/*.
This commit is contained in:
Alex Mukha
2018-04-30 15:23:19 +01:00
committed by GitHub
parent f423681caf
commit 159f5bed1e

19
pom.xml
View File

@@ -64,10 +64,10 @@
<dependency.alfresco-core.version>7.2</dependency.alfresco-core.version>
<dependency.alfresco-data-model.version>8.5</dependency.alfresco-data-model.version>
<dependency.alfresco-repository.version>6.46</dependency.alfresco-repository.version>
<dependency.alfresco-repository.version>6.47</dependency.alfresco-repository.version>
<dependency.alfresco-remote-api.version>6.29</dependency.alfresco-remote-api.version>
<dependency.alfresco-hb-data-sender.version>1.0.8</dependency.alfresco-hb-data-sender.version>
<dependency.alfresco-spring-webscripts.version>6.17</dependency.alfresco-spring-webscripts.version>
<dependency.alfresco-mmt.version>6.0</dependency.alfresco-mmt.version>
<dependency.alfresco-pdf-renderer.version>1.1</dependency.alfresco-pdf-renderer.version>
<dependency.alfresco-trashcan-cleaner.version>2.3</dependency.alfresco-trashcan-cleaner.version>
@@ -196,6 +196,21 @@
<artifactId>alfresco-events</artifactId>
<version>1.2.5</version>
</dependency>
<dependency>
<groupId>org.alfresco.surf</groupId>
<artifactId>spring-surf-core-configservice</artifactId>
<version>${dependency.alfresco-spring-webscripts.version}</version>
</dependency>
<dependency>
<groupId>org.alfresco.surf</groupId>
<artifactId>spring-webscripts</artifactId>
<version>${dependency.alfresco-spring-webscripts.version}</version>
</dependency>
<dependency>
<groupId>org.alfresco.surf</groupId>
<artifactId>spring-webscripts-api</artifactId>
<version>${dependency.alfresco-spring-webscripts.version}</version>
</dependency>
<dependency>
<groupId>org.quartz-scheduler</groupId>
<artifactId>quartz</artifactId>