activemq-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From jbono...@apache.org
Subject [activemq] branch activemq-5.15.x updated: Enable X-XSS-Protection + X-Content-Type-Options headers for the webconsole
Date Wed, 15 May 2019 06:04:32 GMT
This is an automated email from the ASF dual-hosted git repository.

jbonofre pushed a commit to branch activemq-5.15.x
in repository https://gitbox.apache.org/repos/asf/activemq.git


The following commit(s) were added to refs/heads/activemq-5.15.x by this push:
     new 6903274  Enable X-XSS-Protection + X-Content-Type-Options headers for the webconsole
6903274 is described below

commit 690327435135300d81759256f59aa1113c7457d3
Author: Colm O hEigeartaigh <coheigea@apache.org>
AuthorDate: Wed Feb 13 21:29:51 2019 +0000

    Enable X-XSS-Protection + X-Content-Type-Options headers for the webconsole
---
 assembly/src/release/conf/jetty.xml | 12 +++++++++++-
 1 file changed, 11 insertions(+), 1 deletion(-)

diff --git a/assembly/src/release/conf/jetty.xml b/assembly/src/release/conf/jetty.xml
index 75a32d8..c06be4e 100644
--- a/assembly/src/release/conf/jetty.xml
+++ b/assembly/src/release/conf/jetty.xml
@@ -54,6 +54,16 @@
                   <property name="name" value="X-FRAME-OPTIONS"/>
                   <property name="value" value="SAMEORIGIN"/>
                 </bean>
+                <bean id="header" class="org.eclipse.jetty.rewrite.handler.HeaderPatternRule">
+                  <property name="pattern" value="*"/>
+                  <property name="name" value="X-XSS-Protection"/>
+                  <property name="value" value="1; mode=block"/>
+                </bean>
+                <bean id="header" class="org.eclipse.jetty.rewrite.handler.HeaderPatternRule">
+                  <property name="pattern" value="*"/>
+                  <property name="name" value="X-Content-Type-Options"/>
+                  <property name="value" value="nosniff"/>
+                </bean>
             </list>
         </property>
     </bean>
@@ -172,4 +182,4 @@
     </bean>
     
     
-</beans>
\ No newline at end of file
+</beans>


Mime
View raw message