Dominique Jäggi created SLING-6937:
--------------------------------------

             Summary: Referrer Filter: Allow Path Exclusions
                 Key: SLING-6937
                 URL: https://issues.apache.org/jira/browse/SLING-6937
             Project: Sling
          Issue Type: Improvement
          Components: Extensions
    Affects Versions: Security 1.1.2
            Reporter: Dominique Jäggi


For some cases it would be desirable to skip the referrer check altogether for 
certain resource paths, instead of simply setting "Allow Empty Referrer", thus 
weakening the security overall instead of only for a well known set of paths 
for which it would be desirable.

For this reason i'd like to propose adding a path whitelist to the referrer 
filter configuration. Patch attached.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to