You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@archiva.apache.org by oc...@apache.org on 2010/11/24 09:16:46 UTC
svn commit: r1038518 - in /archiva/branches/archiva-1.3.x:
archiva-modules/archiva-web/archiva-webapp/src/main/resources/struts.xml
pom.xml
Author: oching
Date: Wed Nov 24 08:16:46 2010
New Revision: 1038518
URL: http://svn.apache.org/viewvc?rev=1038518&view=rev
Log:
o update to Redback 1.2.4
o enable referrer check by default for security interceptor
Modified:
archiva/branches/archiva-1.3.x/archiva-modules/archiva-web/archiva-webapp/src/main/resources/struts.xml
archiva/branches/archiva-1.3.x/pom.xml
Modified: archiva/branches/archiva-1.3.x/archiva-modules/archiva-web/archiva-webapp/src/main/resources/struts.xml
URL: http://svn.apache.org/viewvc/archiva/branches/archiva-1.3.x/archiva-modules/archiva-web/archiva-webapp/src/main/resources/struts.xml?rev=1038518&r1=1038517&r2=1038518&view=diff
==============================================================================
--- archiva/branches/archiva-1.3.x/archiva-modules/archiva-web/archiva-webapp/src/main/resources/struts.xml (original)
+++ archiva/branches/archiva-1.3.x/archiva-modules/archiva-web/archiva-webapp/src/main/resources/struts.xml Wed Nov 24 08:16:46 2010
@@ -41,7 +41,9 @@
<interceptor-ref name="paramFilter">
<param name="blocked">externalResult</param>
</interceptor-ref>
- <interceptor-ref name="redbackSecureActions"/>
+ <interceptor-ref name="redbackSecureActions">
+ <param name="enableReferrerCheck">true</param>
+ </interceptor-ref>
<interceptor-ref name="redbackPolicyEnforcement"/>
<interceptor-ref name="configuration"/>
<interceptor-ref name="validation">
@@ -57,7 +59,9 @@
<interceptor-ref name="redbackAutoLogin"/>
<interceptor-ref name="defaultStack"/>
<interceptor-ref name="redbackPolicyEnforcement"/>
- <interceptor-ref name="redbackSecureActions"/>
+ <interceptor-ref name="redbackSecureActions">
+ <param name="enableReferrerCheck">true</param>
+ </interceptor-ref>
<interceptor-ref name="validation">
<param name="excludeMethods">input,back,cancel,browse</param>
</interceptor-ref>
Modified: archiva/branches/archiva-1.3.x/pom.xml
URL: http://svn.apache.org/viewvc/archiva/branches/archiva-1.3.x/pom.xml?rev=1038518&r1=1038517&r2=1038518&view=diff
==============================================================================
--- archiva/branches/archiva-1.3.x/pom.xml (original)
+++ archiva/branches/archiva-1.3.x/pom.xml Wed Nov 24 08:16:46 2010
@@ -1102,7 +1102,7 @@
<properties>
<maven.version>2.0.8</maven.version>
<wagon.version>1.0-beta-5</wagon.version>
- <redback.version>1.3-SNAPSHOT</redback.version>
+ <redback.version>1.2.4</redback.version>
<jetty.version>6.1.19</jetty.version>
<slf4j.version>1.5.8</slf4j.version>
<binder.version>0.9</binder.version>