ambari-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Anita Gnanamalar Jebaraj (JIRA)" <j...@apache.org>
Subject [jira] [Created] (AMBARI-18871) HTTP responses needs to have the character encoding specified in the content type header
Date Mon, 14 Nov 2016 05:49:58 GMT
Anita Gnanamalar Jebaraj created AMBARI-18871:
-------------------------------------------------

             Summary: HTTP responses needs to have the character encoding specified in the
content type header
                 Key: AMBARI-18871
                 URL: https://issues.apache.org/jira/browse/AMBARI-18871
             Project: Ambari
          Issue Type: Bug
          Components: ambari-server
    Affects Versions: trunk
            Reporter: Anita Gnanamalar Jebaraj
            Assignee: Anita Gnanamalar Jebaraj
             Fix For: trunk


The charset information(UTF-8) can be added to all the response headers to harden the security
for the client. When the charset information is not specified the web browser may choose a
different encoding by guessing which encoding is actually being used by the web page. 

This specific issue is mentioned in the section 3.1.1.5 of RFC7231



--
This message was sent by Atlassian JIRA
(v6.3.4#6332)

Mime
View raw message