Enum ProtectionContext

  • All Implemented Interfaces:
    Serializable, Comparable<ProtectionContext>

    public enum ProtectionContext
    extends Enum<ProtectionContext>
    Deprecated.
    This enumeration defines the context for executing XSS protection.

    The specified rules refer to http://www.owasp.org/index.php/XSS_%28Cross_Site_Scripting%29_Prevention_Cheat_Sheet

    Since:
    5.4
    • Enum Constant Detail

      • HTML_HTML_CONTENT

        public static final ProtectionContext HTML_HTML_CONTENT
        Deprecated.
        Escape HTML for use inside element content (rules #6 and - to some degree - #1), using a policy to remove potentially malicous HTML
      • PLAIN_HTML_CONTENT

        public static final ProtectionContext PLAIN_HTML_CONTENT
        Deprecated.
        Escape plain text for use inside HTML content (rule #1)
    • Method Detail

      • values

        public static ProtectionContext[] values()
        Deprecated.
        Returns an array containing the constants of this enum type, in the order they are declared. This method may be used to iterate over the constants as follows:
        for (ProtectionContext c : ProtectionContext.values())
            System.out.println(c);
        
        Returns:
        an array containing the constants of this enum type, in the order they are declared
      • valueOf

        public static ProtectionContext valueOf​(String name)
        Deprecated.
        Returns the enum constant of this type with the specified name. The string must match exactly an identifier used to declare an enum constant in this type. (Extraneous whitespace characters are not permitted.)
        Parameters:
        name - the name of the enum constant to be returned.
        Returns:
        the enum constant with the specified name
        Throws:
        IllegalArgumentException - if this enum type has no constant with the specified name
        NullPointerException - if the argument is null
      • getName

        public String getName()
        Deprecated.
        Gets the name of the protection context.
        Returns:
        The name of the protection context
      • fromName

        public static ProtectionContext fromName​(String name)
        Deprecated.
        Gets a protection context from the specified name.
        Parameters:
        name - The name to get the protection context from
        Returns:
        The protection context; null if an invalid protection context has been specified