You are viewing a plain text version of this content. The canonical link for it is here.
Posted to issues@ozone.apache.org by "Ethan Rose (Jira)" <ji...@apache.org> on 2021/10/20 20:41:06 UTC

[jira] [Updated] (HDDS-5120) Access-Control-Allow-Origin header must be set in all the responses from http endpoints

     [ https://issues.apache.org/jira/browse/HDDS-5120?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]

Ethan Rose updated HDDS-5120:
-----------------------------
    Target Version/s: 1.3.0  (was: 1.2.0)

I am managing the 1.2.0 release and we currently have more than 600 issues targeted for 1.2.0. I am moving the target field to 1.3.0.

If you are actively working on this jira and believe this should be targeted for the 1.2.0 release, Please reach out to me via Apache email or Slack.

> Access-Control-Allow-Origin header must be set in all the responses from http endpoints  
> -----------------------------------------------------------------------------------------
>
>                 Key: HDDS-5120
>                 URL: https://issues.apache.org/jira/browse/HDDS-5120
>             Project: Apache Ozone
>          Issue Type: Bug
>          Components: Security, website
>    Affects Versions: 1.1.0
>            Reporter: Vivek Ratnavel Subramanian
>            Assignee: Vivek Ratnavel Subramanian
>            Priority: Major
>
> To prevent CORS attacks, all the http endpoints exposed by Ozone should include Access-Control-Allow-Origin header in the response pointing to a trusted domain.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

---------------------------------------------------------------------
To unsubscribe, e-mail: issues-unsubscribe@ozone.apache.org
For additional commands, e-mail: issues-help@ozone.apache.org