[ 
https://issues.apache.org/jira/browse/CLOUDSTACK-9833?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15968682#comment-15968682
 ] 

ASF GitHub Bot commented on CLOUDSTACK-9833:
--------------------------------------------

Github user harikrishna-patnala commented on the issue:

    https://github.com/apache/cloudstack/pull/2006
  
    Thanks @jayapalu I have also added some content security policy in HTTP 
servlet response to detect and mitigate certain type of attacks.
    Restricted image source, style sheets, java scripts, URLs to be loaded only 
from self.


> Move configuration parameters from Config.java to use ConfigDepot
> -----------------------------------------------------------------
>
>                 Key: CLOUDSTACK-9833
>                 URL: https://issues.apache.org/jira/browse/CLOUDSTACK-9833
>             Project: CloudStack
>          Issue Type: Bug
>      Security Level: Public(Anyone can view this level - this is the 
> default.) 
>            Reporter: Harikrishna Patnala
>            Assignee: Harikrishna Patnala
>             Fix For: 4.11.0.0
>
>
> To move the following configuration parameters from config.java to 
> ConfigDepot.
> snapshot.max.hourly
> snapshot.max.daily
> snapshot.max.weekly
> snapshot.max.monthly
> enable.secure.session.cookie
> json.content.type



--
This message was sent by Atlassian JIRA
(v6.3.15#6346)

Reply via email to