couchdb-commits mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From rnew...@apache.org
Subject chttpd commit: updated refs/heads/master to 8aa7adf
Date Tue, 18 Aug 2015 09:54:33 GMT
Repository: couchdb-chttpd
Updated Branches:
  refs/heads/master ebf6028fe -> 8aa7adfb4


Whitelist CSRF header for CORS

x-couchdb-csrf is a permitted request header
x-couchdb-csrf-valid is a permitted response header

COUCHDB-2762


Project: http://git-wip-us.apache.org/repos/asf/couchdb-chttpd/repo
Commit: http://git-wip-us.apache.org/repos/asf/couchdb-chttpd/commit/8aa7adfb
Tree: http://git-wip-us.apache.org/repos/asf/couchdb-chttpd/tree/8aa7adfb
Diff: http://git-wip-us.apache.org/repos/asf/couchdb-chttpd/diff/8aa7adfb

Branch: refs/heads/master
Commit: 8aa7adfb4166123d27b1288fa9d06d560ac2c2c0
Parents: ebf6028
Author: Robert Newson <rnewson@apache.org>
Authored: Tue Aug 18 10:50:29 2015 +0100
Committer: Robert Newson <rnewson@apache.org>
Committed: Tue Aug 18 10:50:29 2015 +0100

----------------------------------------------------------------------
 include/chttpd_cors.hrl | 5 +++--
 1 file changed, 3 insertions(+), 2 deletions(-)
----------------------------------------------------------------------


http://git-wip-us.apache.org/repos/asf/couchdb-chttpd/blob/8aa7adfb/include/chttpd_cors.hrl
----------------------------------------------------------------------
diff --git a/include/chttpd_cors.hrl b/include/chttpd_cors.hrl
index 357b103..428dadd 100644
--- a/include/chttpd_cors.hrl
+++ b/include/chttpd_cors.hrl
@@ -30,7 +30,8 @@
     "x-couchdb-www-authenticate",
     "x-http-method-override",
     "x-requested-with",
-    "x-couchdb-vhost-path"
+    "x-couchdb-vhost-path",
+    "x-couchdb-csrf"
 ]).
 
 
@@ -65,7 +66,7 @@
     "x-couch-request-id",
     "x-couch-update-newrev",
     "x-couchdb-body-time",
-    "x-couchdb-csrf"
+    "x-couchdb-csrf-valid"
 ]).
 
 


Mime
View raw message