From: Robert Varga Date: Sat, 16 Sep 2023 06:31:31 +0000 (+0200) Subject: Disable invalidRequest.blockTraversal X-Git-Tag: v0.16.10~3 X-Git-Url: https://git.opendaylight.org/gerrit/gitweb?a=commitdiff_plain;h=0198b08154c1ea10cbe852247035ebaf2c9ff59d;p=aaa.git Disable invalidRequest.blockTraversal Shiro's traversal filtering disallows escaped slashes, which are part of RESTCONF spec. Disable traversal filtering by default. JIRA: AAA-265 Change-Id: I17fce53bf9e8f34a81796fa476508f5dd5a5b7e1 Signed-off-by: Robert Varga (cherry picked from commit 3abb8fff9677c0f4c52302926eac89eeb87161dc) --- diff --git a/aaa-shiro/impl/src/main/resources/initial/aaa-app-config.xml b/aaa-shiro/impl/src/main/resources/initial/aaa-app-config.xml index 03cfaf355..1fc146e22 100644 --- a/aaa-shiro/impl/src/main/resources/initial/aaa-app-config.xml +++ b/aaa-shiro/impl/src/main/resources/initial/aaa-app-config.xml @@ -280,6 +280,23 @@ org.opendaylight.aaa.shiro.realm.MDSALDynamicAuthorizationFilter + +
+ + invalidRequest.blockSemicolon + false +
+
+ + invalidRequest.blockTraversal + false +