Return-Path: X-Original-To: apmail-airavata-dev-archive@www.apache.org Delivered-To: apmail-airavata-dev-archive@www.apache.org Received: from mail.apache.org (hermes.apache.org [140.211.11.3]) by minotaur.apache.org (Postfix) with SMTP id 8B7DA10A24 for ; Wed, 25 Sep 2013 21:49:10 +0000 (UTC) Received: (qmail 11347 invoked by uid 500); 25 Sep 2013 21:49:05 -0000 Delivered-To: apmail-airavata-dev-archive@airavata.apache.org Received: (qmail 10744 invoked by uid 500); 25 Sep 2013 21:49:03 -0000 Mailing-List: contact dev-help@airavata.apache.org; run by ezmlm Precedence: bulk List-Help: List-Unsubscribe: List-Post: List-Id: Reply-To: dev@airavata.apache.org Delivered-To: mailing list dev@airavata.apache.org Received: (qmail 10688 invoked by uid 99); 25 Sep 2013 21:49:02 -0000 Received: from arcas.apache.org (HELO arcas.apache.org) (140.211.11.28) by apache.org (qpsmtpd/0.29) with ESMTP; Wed, 25 Sep 2013 21:49:02 +0000 Date: Wed, 25 Sep 2013 21:49:02 +0000 (UTC) From: "Chathuri Wimalasena (JIRA)" To: dev@airavata.apache.org Message-ID: In-Reply-To: References: Subject: [jira] [Commented] (AIRAVATA-870) Enable CORS support in Airavata server MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-JIRA-FingerPrint: 30527f35849b9dde25b450d4833f0394 [ https://issues.apache.org/jira/browse/AIRAVATA-870?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13778127#comment-13778127 ] Chathuri Wimalasena commented on AIRAVATA-870: ---------------------------------------------- Committed the patch in revision 1526315. Thanks Viknesh for the contribution. > Enable CORS support in Airavata server > -------------------------------------- > > Key: AIRAVATA-870 > URL: https://issues.apache.org/jira/browse/AIRAVATA-870 > Project: Airavata > Issue Type: Improvement > Reporter: Viknes Balasubramanee > Assignee: Chathuri Wimalasena > Attachments: Airavata-870-new.patch > > > With the GOAL of Airavata to have more support for REST APIs, Cross Domain requests become inevitable. Currently Airavata accepts requests from all domains for any operation which makes us open to attacks. The server should be able to handle such cross domain requests more effectively. We can add a CORS filter to handle this. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira