[
https://issues.apache.org/jira/browse/NUTCH-2930?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17581754#comment-17581754
]
ASF GitHub Bot commented on NUTCH-2930:
---------------------------------------
sebastian-nagel commented on PR #736:
URL: https://github.com/apache/nutch/pull/736#issuecomment-1220486024
(rebased to recent master and resolved merge conflicts)
> Protocol-okhttp: implement IP filter
> ------------------------------------
>
> Key: NUTCH-2930
> URL: https://issues.apache.org/jira/browse/NUTCH-2930
> Project: Nutch
> Issue Type: Improvement
> Components: plugin, protocol, security
> Affects Versions: 1.18
> Reporter: Sebastian Nagel
> Assignee: Sebastian Nagel
> Priority: Major
> Fix For: 1.19
>
>
> In order to avoid information leakage to a public search index or web
> archive, it should be possible to configure Nutch in a way that no content is
> fetched from localhost, loop-back addresses, private address spaces.
> NUTCH-2527 adds the configuration snippets to exclude URLs pointing to
> private addresses.
> However, filtering URLs isn't enough because a DNS entry of an arbitrary host
> name may point to a private IP address. Blocking must happen on the protocol
> level because the IP address is only know in the protocol implementation.
> I'll add an implementation for protocol-okhttp.
--
This message was sent by Atlassian Jira
(v8.20.10#820010)