Changeset e5b7e97


Ignore:
Timestamp:
Apr 8, 2015 7:45:37 PM (5 years ago)
Author:
zzz <zzz@…>
Branches:
master
Children:
7825f0f
Parents:
5486874
Message:

Jetty: Set session cookies to HttpOnly? in all webapps
i2psnark: Remove extra mime types in i2psnark web.xml;
added to Jetty's default by now, or in our mime.properties file

Location:
apps
Files:
5 edited

Legend:

Unmodified
Added
Removed
  • apps/addressbook/web.xml

    r5486874 re5b7e97  
    2929    </servlet-mapping>
    3030
     31    <!-- this webapp doesn't actually use sessions or cookies -->
     32    <session-config>
     33        <session-timeout>30</session-timeout>
     34        <cookie-config>
     35            <http-only>true</http-only>
     36        </cookie-config>
     37    </session-config>
    3138</web-app>
  • apps/i2psnark/web.xml

    r5486874 re5b7e97  
    2727    </servlet-mapping>
    2828   
     29    <!-- this webapp doesn't actually use sessions or cookies -->
    2930    <session-config>
    3031        <session-timeout>
    3132            30
    3233        </session-timeout>
     34        <cookie-config>
     35            <http-only>true</http-only>
     36        </cookie-config>
    3337    </session-config>
    3438
    35 
    36     <!-- mime types not in mime.properties in the jetty 5.1.15 source -->
    37 
    38     <mime-mapping>
    39         <extension>mkv</extension>
    40         <mime-type>video/x-matroska</mime-type>
    41     </mime-mapping>
    42 
    43     <mime-mapping>
    44         <extension>wmv</extension>
    45         <mime-type>video/x-ms-wmv</mime-type>
    46     </mime-mapping>
    47 
    48     <mime-mapping>
    49         <extension>flv</extension>
    50         <mime-type>video/x-flv</mime-type>
    51     </mime-mapping>
    52 
    53     <mime-mapping>
    54         <extension>mp4</extension>
    55         <mime-type>video/mp4</mime-type>
    56     </mime-mapping>
    57 
    58     <mime-mapping>
    59         <extension>rar</extension>
    60         <mime-type>application/rar</mime-type>
    61     </mime-mapping>
    62 
    63     <mime-mapping>
    64         <extension>7z</extension>
    65         <mime-type>application/x-7z-compressed</mime-type>
    66     </mime-mapping>
    67 
    68     <mime-mapping>
    69         <extension>iso</extension>
    70         <mime-type>application/x-iso9660-image</mime-type>
    71     </mime-mapping>
    72 
    73     <mime-mapping>
    74         <extension>ico</extension>
    75         <mime-type>image/x-icon</mime-type>
    76     </mime-mapping>
    77 
    78     <mime-mapping>
    79         <extension>exe</extension>
    80         <mime-type>application/x-msdos-program</mime-type>
    81     </mime-mapping>
    82 
    83     <mime-mapping>
    84         <extension>flac</extension>
    85         <mime-type>audio/flac</mime-type>
    86     </mime-mapping>
    87 
    88     <mime-mapping>
    89         <extension>m4a</extension>
    90         <mime-type>audio/mpeg</mime-type>
    91     </mime-mapping>
    92 
    93     <mime-mapping>
    94         <extension>wma</extension>
    95         <mime-type>audio/x-ms-wma</mime-type>
    96     </mime-mapping>
    97 
    9839</web-app>
  • apps/i2ptunnel/jsp/web.xml

    r5486874 re5b7e97  
    3333    </servlet-mapping>
    3434
     35    <!-- this webapp doesn't actually use sessions or cookies -->
    3536    <session-config>
    3637        <session-timeout>
    3738            30
    3839        </session-timeout>
     40        <cookie-config>
     41            <http-only>true</http-only>
     42        </cookie-config>
    3943    </session-config>
    4044    <welcome-file-list>
  • apps/routerconsole/jsp/web.xml

    r5486874 re5b7e97  
    3636            30
    3737        </session-timeout>
     38        <cookie-config>
     39            <http-only>true</http-only>
     40        </cookie-config>
    3841    </session-config>
    3942    <welcome-file-list>
  • apps/susimail/src/WEB-INF/web.xml

    r5486874 re5b7e97  
    2424  <session-config>
    2525    <session-timeout>1440</session-timeout>
     26    <cookie-config>
     27      <http-only>true</http-only>
     28    </cookie-config>
    2629  </session-config>
    2730  <!-- tomcat (untested) -->
Note: See TracChangeset for help on using the changeset viewer.