Don't include stacktraces in REST responses 39/67439/6
authorEvan Zeller <evanrzeller@gmail.com>
Mon, 22 Jan 2018 20:12:38 +0000 (12:12 -0800)
committerJakubToth <jakub.toth@pantheon.tech>
Wed, 14 Feb 2018 10:18:51 +0000 (10:18 +0000)
commitabb05e4718e54494159fdd4486c908ad5a0f46b9
tree7781debcb847cd4db1cc0f9cfa4f17d0bdcf16ba
parentd2542903bc933dbc5a68a71baa66e6ffb606bc5e
Don't include stacktraces in REST responses

OWASP best practices recommend user facing error messages should not
contain stack traces or line numbers. The full stack trace should still be available in karaf.log.

Change-Id: Ia8ffed91ecdbf8a1d299c90c33882bbc18d55b50
Signed-off-by: Evan Zeller <evanrzeller@gmail.com>
restconf/restconf-common/src/main/java/org/opendaylight/restconf/common/errors/RestconfDocumentedException.java
restconf/restconf-nb-rfc8040/src/test/java/org/opendaylight/restconf/nb/rfc8040/rests/services/impl/JSONRestconfServiceRfc8040ImplTest.java