[ 
https://issues.apache.org/jira/browse/SLING-6937?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
 ]

Dominique Jäggi updated SLING-6937:
-----------------------------------
    Summary: Referrer Filter: Allow Regex User Agent Exclusions  (was: Referrer 
Filter: Allow Path Exclusions)

> Referrer Filter: Allow Regex User Agent Exclusions
> --------------------------------------------------
>
>                 Key: SLING-6937
>                 URL: https://issues.apache.org/jira/browse/SLING-6937
>             Project: Sling
>          Issue Type: Improvement
>          Components: Extensions
>    Affects Versions: Security 1.1.2
>            Reporter: Dominique Jäggi
>         Attachments: SLING_6937___Referrer_Filter__Allow_Path_Exclusions.patch
>
>
> For some cases it would be desirable to skip the referrer check altogether 
> for certain resource paths, instead of simply setting "Allow Empty Referrer", 
> thus weakening the security overall instead of only for a well known set of 
> paths for which it would be desirable.
> For this reason i'd like to propose adding a path whitelist to the referrer 
> filter configuration. Patch attached.



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to