You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@archiva.apache.org by "Brett Porter (JIRA)" <ji...@codehaus.org> on 2009/03/19 15:12:12 UTC

[jira] Created: (MRM-1147) handling leading / on whitelists is ambiguous

handling leading / on whitelists is ambiguous
---------------------------------------------

                 Key: MRM-1147
                 URL: http://jira.codehaus.org/browse/MRM-1147
             Project: Archiva
          Issue Type: Bug
          Components: remote proxy
    Affects Versions: 1.2-M1
            Reporter: Brett Porter


Archiva passes the proxy requests with a leading / in all cases, which won't match a whitelist (or blacklist) that doesn't start with a /, which has traditionally been allowed. Both paths should be normalized.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

[jira] Closed: (MRM-1147) handling leading / on whitelists is ambiguous

Posted by "Brett Porter (JIRA)" <ji...@codehaus.org>.
     [ http://jira.codehaus.org/browse/MRM-1147?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Brett Porter closed MRM-1147.
-----------------------------

         Assignee: Brett Porter
       Resolution: Fixed
    Fix Version/s: 1.2-M2

> handling leading / on whitelists is ambiguous
> ---------------------------------------------
>
>                 Key: MRM-1147
>                 URL: http://jira.codehaus.org/browse/MRM-1147
>             Project: Archiva
>          Issue Type: Bug
>          Components: remote proxy
>    Affects Versions: 1.2-M1
>            Reporter: Brett Porter
>            Assignee: Brett Porter
>             Fix For: 1.2-M2
>
>
> Archiva passes the proxy requests with a leading / in all cases, which won't match a whitelist (or blacklist) that doesn't start with a /, which has traditionally been allowed. Both paths should be normalized.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

[jira] Updated: (MRM-1147) handling leading / on whitelists is ambiguous

Posted by "Maria Odea Ching (JIRA)" <ji...@codehaus.org>.
     [ http://jira.codehaus.org/browse/MRM-1147?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Maria Odea Ching updated MRM-1147:
----------------------------------

    Fix Version/s:     (was: 1.2-M2)
                   1.2

> handling leading / on whitelists is ambiguous
> ---------------------------------------------
>
>                 Key: MRM-1147
>                 URL: http://jira.codehaus.org/browse/MRM-1147
>             Project: Archiva
>          Issue Type: Bug
>          Components: remote proxy
>    Affects Versions: 1.2-M1
>            Reporter: Brett Porter
>            Assignee: Brett Porter
>             Fix For: 1.2
>
>
> Archiva passes the proxy requests with a leading / in all cases, which won't match a whitelist (or blacklist) that doesn't start with a /, which has traditionally been allowed. Both paths should be normalized.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: http://jira.codehaus.org/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira