You are viewing a plain text version of this content. The canonical link for it is here.
Posted to dev@knox.apache.org by "Rajashekhar Meesala (Jira)" <ji...@apache.org> on 2020/03/03 06:57:00 UTC

[jira] [Commented] (KNOX-2256) Showing jetty version on error handling causing Improper error handling as a security vulnerability

    [ https://issues.apache.org/jira/browse/KNOX-2256?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17049956#comment-17049956 ] 

Rajashekhar Meesala commented on KNOX-2256:
-------------------------------------------

Thank you Kevin.
If anyone still requires the solution, add below property inĀ *gateway-site.xml*

*<property>*
 *<name>gateway.server.header.enabled</name>*
 *<value>false</value>*
 *</property>*

> Showing jetty version on error handling causing Improper error handling as a security vulnerability
> ---------------------------------------------------------------------------------------------------
>
>                 Key: KNOX-2256
>                 URL: https://issues.apache.org/jira/browse/KNOX-2256
>             Project: Apache Knox
>          Issue Type: Bug
>          Components: Server
>         Environment: centos os
>            Reporter: Rajashekhar Meesala
>            Assignee: Kevin Risden
>            Priority: Major
>         Attachments: knoxJettyVersion.PNG
>
>
> Hi Team,
> Showing jetty version on error handling causing Improper error handling as security vulnerability which is our current blocker for production with knox. Kindly provide a way to hide this jetty version.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)