Files
freeipa/ipalib
Rob Crittenden 2d6eeb205e Require an HTTP Referer header in the server. Send one in ipa tools.
This is to prevent a Cross-Site Request Forgery (CSRF) attack where
a rogue server tricks a user who was logged into the FreeIPA
management interface into visiting a specially-crafted URL where
the attacker could perform FreeIPA oonfiguration changes with the
privileges of the logged-in user.

https://bugzilla.redhat.com/show_bug.cgi?id=747710
2011-12-12 17:36:45 -05:00
..
2011-12-12 00:17:07 -05:00
2011-04-21 10:41:29 +02:00
2011-04-13 15:58:45 +02:00
2010-12-20 17:19:53 -05:00
2011-04-13 15:58:45 +02:00
2011-11-15 13:17:44 +01:00
2010-12-20 17:19:53 -05:00
2011-12-06 22:07:35 +00:00
2011-01-25 14:01:36 -05:00