[
https://issues.apache.org/jira/browse/HDFS-9711?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]
Chris Nauroth updated HDFS-9711:
--------------------------------
Release Note: WebHDFS now supports options to enforce cross-site request
forgery (CSRF) prevention for HTTP requests to both the NameNode and the
DataNode. Please refer to the updated WebHDFS documentation for a description
of this feature and further details on how to configure it.
> Integrate CSRF prevention filter in WebHDFS.
> --------------------------------------------
>
> Key: HDFS-9711
> URL: https://issues.apache.org/jira/browse/HDFS-9711
> Project: Hadoop HDFS
> Issue Type: New Feature
> Components: datanode, namenode, webhdfs
> Reporter: Chris Nauroth
> Assignee: Chris Nauroth
> Fix For: 2.8.0
>
> Attachments: HDFS-9711-branch-2.005.patch, HDFS-9711.001.patch,
> HDFS-9711.002.patch, HDFS-9711.003.patch, HDFS-9711.004.patch,
> HDFS-9711.005.patch
>
>
> HADOOP-12691 introduced a filter in Hadoop Common to help REST APIs guard
> against cross-site request forgery attacks. This issue tracks integration of
> that filter in WebHDFS.
--
This message was sent by Atlassian JIRA
(v6.3.4#6332)