This has been reported in this public tracker about a year and a half ago (see issue 10783 <https://code.google.com/p/googleappengine/issues/detail?id=10783>). Google has acknowledged the issue there but has never offered an official response. It makes conversations with customers about security difficult. Can somebody respond here and/or the bug tracker what the plans are to make us look good in this test and hopefully more secure?
(Before somebody jumps to offer Cloudflare, I know that Cloudflare or some other front end might be an option but I do not want to have traffic in the clear between that front end and Google, so I want a fix from Google.) Thanks PK [email protected] -- You received this message because you are subscribed to the Google Groups "Google App Engine" group. To unsubscribe from this group and stop receiving emails from it, send an email to [email protected]. To post to this group, send email to [email protected]. Visit this group at http://groups.google.com/group/google-appengine. To view this discussion on the web visit https://groups.google.com/d/msgid/google-appengine/1523CE7C-CD9D-47B4-8041-96FCC185A69A%40gae123.com. For more options, visit https://groups.google.com/d/optout.
