Browse Source

referer过滤排除websocket连接

zhc
zhczyx@163.com 2 weeks ago
parent
commit
11fe9b9a29
  1. 2
      data-center-business-controller/src/main/java/com/techsor/datacenter/business/configurator/CrosXssFilter.java

2
data-center-business-controller/src/main/java/com/techsor/datacenter/business/configurator/CrosXssFilter.java

@ -53,7 +53,7 @@ public class CrosXssFilter implements Filter {
String requestUri = httpRequest.getRequestURI();
// 当 URL 不包含 /common/ 时,校验 Referer
// if (!requestUri.contains("/common/") && !requestUri.contains("swagger")) {
if (!requestUri.contains("/swagger")) {
if (!requestUri.contains("/swagger") && !requestUri.contains("websocket")) {
String referer = httpRequest.getHeader("Referer");
if (StringUtils.isNotBlank(referer)){
if(!"*".equals(accessControlAllowOrigin)){

Loading…
Cancel
Save