[
https://issues.apache.org/jira/browse/CLOUDSTACK-9833?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=15968682#comment-15968682
]
ASF GitHub Bot commented on CLOUDSTACK-9833:
--------------------------------------------
Github user harikrishna-patnala commented on the issue:
https://github.com/apache/cloudstack/pull/2006
Thanks @jayapalu I have also added some content security policy in HTTP
servlet response to detect and mitigate certain type of attacks.
Restricted image source, style sheets, java scripts, URLs to be loaded only
from self.
> Move configuration parameters from Config.java to use ConfigDepot
> -----------------------------------------------------------------
>
> Key: CLOUDSTACK-9833
> URL: https://issues.apache.org/jira/browse/CLOUDSTACK-9833
> Project: CloudStack
> Issue Type: Bug
> Security Level: Public(Anyone can view this level - this is the
> default.)
> Reporter: Harikrishna Patnala
> Assignee: Harikrishna Patnala
> Fix For: 4.11.0.0
>
>
> To move the following configuration parameters from config.java to
> ConfigDepot.
> snapshot.max.hourly
> snapshot.max.daily
> snapshot.max.weekly
> snapshot.max.monthly
> enable.secure.session.cookie
> json.content.type
--
This message was sent by Atlassian JIRA
(v6.3.15#6346)