Commit 2021ece3 authored by Derek DeMoro's avatar Derek DeMoro Committed by derek

Migrating security fix.

git-svn-id: http://svn.igniterealtime.org/svn/repos/openfire/branches@8161 b35dd754-fafc-0310-a699-88a17e54d16e
parent 89c7b203
...@@ -24,7 +24,8 @@ ...@@ -24,7 +24,8 @@
<init-param> <init-param>
<param-name>excludes</param-name> <param-name>excludes</param-name>
<param-value> <param-value>
login.jsp,index.jsp?logout=true,setup/index.jsp,setup/setup-,.gif,.png,error-serverdown.jsp</param-value> login.jsp,index.jsp?logout=true,setup/index.jsp,setup/setup-,.gif,.png,error-serverdown.jsp
</param-value>
</init-param> </init-param>
</filter> </filter>
...@@ -83,6 +84,11 @@ ...@@ -83,6 +84,11 @@
<url-pattern>/*</url-pattern> <url-pattern>/*</url-pattern>
</filter-mapping> </filter-mapping>
<filter-mapping>
<filter-name>AuthCheck</filter-name>
<servlet-name>dwr-invoker</servlet-name>
</filter-mapping>
<listener> <listener>
<listener-class>org.jivesoftware.openfire.XMPPContextListener</listener-class> <listener-class>org.jivesoftware.openfire.XMPPContextListener</listener-class>
</listener> </listener>
...@@ -102,10 +108,6 @@ ...@@ -102,10 +108,6 @@
<servlet> <servlet>
<servlet-name>dwr-invoker</servlet-name> <servlet-name>dwr-invoker</servlet-name>
<servlet-class>uk.ltd.getahead.dwr.DWRServlet</servlet-class> <servlet-class>uk.ltd.getahead.dwr.DWRServlet</servlet-class>
<init-param>
<param-name>debug</param-name>
<param-value>true</param-value>
</init-param>
</servlet> </servlet>
<servlet> <servlet>
...@@ -126,7 +128,7 @@ ...@@ -126,7 +128,7 @@
<url-pattern>/getFavicon</url-pattern> <url-pattern>/getFavicon</url-pattern>
</servlet-mapping> </servlet-mapping>
<servlet-mapping> <servlet-mapping>
<servlet-name>PluginIconServlet</servlet-name> <servlet-name>PluginIconServlet</servlet-name>
<url-pattern>/geticon</url-pattern> <url-pattern>/geticon</url-pattern>
</servlet-mapping> </servlet-mapping>
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment