Class HttpConnectorSecurityAdvice

java.lang.Object
org.sdase.commons.server.security.validation.HttpConnectorSecurityAdvice

public class HttpConnectorSecurityAdvice extends Object
Checks that secure defaults of used HttpConnectorFactory instances are not modified and overwrites insecure defaults. This class checks for the risks identified in the security guide as:
  • "Risiko: Verlust der der Quell-IP-Adresse"
  • "Risiko: Erkennung von vertraulichen Komponenten ... Entfernen von applikations-bezogenen Headern"
  • Constructor Details

    • HttpConnectorSecurityAdvice

      public HttpConnectorSecurityAdvice(io.dropwizard.core.server.ServerFactory serverFactory)
  • Method Details

    • applySecureConfiguration

      public void applySecureConfiguration()