This is an automated email from the ASF dual-hosted git repository.
agozhiy pushed a change to branch master
in repository https://gitbox.apache.org/repos/asf/drill.git.
from f2715ab DRILL-7424: Project operator fails to set the container row
count
add 4b61535 DRILL-7351: Added tokens to Web forms to prevent CSRF attacks
No new revisions were added by this update.
Summary of changes:
.../yarn/appMaster/DrillApplicationMaster.java | 18 ++++++
.../yarn/appMaster/http/CsrfTokenInjectFilter.java | 35 ++++++-----
.../appMaster/http/CsrfTokenValidateFilter.java | 34 ++++++-----
.../apache/drill/yarn/appMaster/http/PageTree.java | 8 +++
.../drill/yarn/appMaster/http/WebConstants.java | 15 ++---
.../drill/yarn/appMaster/http/WebServer.java | 11 ++++
.../drill/yarn/appMaster/http/WebUiPageTree.java | 20 +++++--
.../apache/drill/yarn/appMaster/http/WebUtils.java | 51 ++++++++++++++++
.../org/apache/drill/yarn/client/DrillOnYarn.java | 70 ++++++++++++++--------
drill-yarn/src/main/resources/drill-am/manage.ftl | 1 +
.../src/main/resources/drill-am/shrink-warning.ftl | 1 +
...rNameFilter.java => CsrfTokenInjectFilter.java} | 33 +++++-----
...ameFilter.java => CsrfTokenValidateFilter.java} | 30 +++++-----
.../drill/exec/server/rest/QueryResources.java | 32 +++++++---
.../drill/exec/server/rest/StatusResources.java | 27 +++++++--
.../drill/exec/server/rest/StorageResources.java | 58 +++++++++++++++---
.../apache/drill/exec/server/rest/WebServer.java | 6 ++
.../drill/exec/server/rest/WebServerConstants.java | 5 +-
.../apache/drill/exec/server/rest/WebUtils.java | 51 ++++++++++++++++
.../exec/server/rest/profile/ProfileResources.java | 21 +++++--
.../exec/server/rest/profile/ProfileWrapper.java | 15 ++++-
exec/java-exec/src/main/resources/rest/options.ftl | 7 ++-
.../src/main/resources/rest/profile/profile.ftl | 1 +
.../src/main/resources/rest/query/query.ftl | 1 +
.../src/main/resources/rest/storage/list.ftl | 25 ++++----
.../src/main/resources/rest/storage/update.ftl | 19 +++---
26 files changed, 439 insertions(+), 156 deletions(-)
copy
exec/java-exec/src/main/java/org/apache/drill/exec/server/rest/UserNameFilter.java
=>
drill-yarn/src/main/java/org/apache/drill/yarn/appMaster/http/CsrfTokenInjectFilter.java
(57%)
copy
exec/java-exec/src/main/java/org/apache/drill/exec/server/rest/UserNameFilter.java
=>
drill-yarn/src/main/java/org/apache/drill/yarn/appMaster/http/CsrfTokenValidateFilter.java
(54%)
copy exec/rpc/src/main/java/org/apache/drill/exec/rpc/RpcMetrics.java =>
drill-yarn/src/main/java/org/apache/drill/yarn/appMaster/http/WebConstants.java
(75%)
create mode 100644
drill-yarn/src/main/java/org/apache/drill/yarn/appMaster/http/WebUtils.java
copy
exec/java-exec/src/main/java/org/apache/drill/exec/server/rest/{UserNameFilter.java
=> CsrfTokenInjectFilter.java} (58%)
copy
exec/java-exec/src/main/java/org/apache/drill/exec/server/rest/{UserNameFilter.java
=> CsrfTokenValidateFilter.java} (58%)
create mode 100644
exec/java-exec/src/main/java/org/apache/drill/exec/server/rest/WebUtils.java