Index: lams_central/conf/security/Owasp.CsrfGuard.properties =================================================================== diff -u -r82166d9c82b6d5ef5fd3f22db5174bbee8a286f4 -r1840d1ada2e0a7dc494e83ed0c183f6c98b6da92 --- lams_central/conf/security/Owasp.CsrfGuard.properties (.../Owasp.CsrfGuard.properties) (revision 82166d9c82b6d5ef5fd3f22db5174bbee8a286f4) +++ lams_central/conf/security/Owasp.CsrfGuard.properties (.../Owasp.CsrfGuard.properties) (revision 1840d1ada2e0a7dc494e83ed0c183f6c98b6da92) @@ -6,6 +6,23 @@ # List of actions to check # Each key goes into a separate line prefixed with org.owasp.csrfguard.protected. # A key suffix must not contain a dot "." character + +# Admin forms +org.owasp.csrfguard.protected.adminSaveConfigSettings=/lams/admin/config/save.do +org.owasp.csrfguard.protected.adminSaveTimezone=/lams/admin/timezonemanagement/save.do +org.owasp.csrfguard.protected.adminSaveLoginpage=/lams/admin/loginsave.do +org.owasp.csrfguard.protected.adminSignupAdd=/lams/admin/signupManagement/add.do +org.owasp.csrfguard.protected.adminSignupDelete=/lams/admin/signupManagement/delete.do +org.owasp.csrfguard.protected.adminLtiConsumerSave=/lams/admin/ltiConsumerManagement/save.do +org.owasp.csrfguard.protected.adminLtiConsumerDelete=/lams/admin/ltiConsumerManagement/delete.do +org.owasp.csrfguard.protected.adminLtiConsumerToggleStatus=/lams/admin/ltiConsumerManagement/disable.do +org.owasp.csrfguard.protected.adminPolicySave=/lams/admin/policyManagement/save.do +org.owasp.csrfguard.protected.adminPolicyToggleStatus=/lams/admin/policyManagement/togglePolicyStatus.do +org.owasp.csrfguard.protected.adminExtserverSave=/lams/admin/extserver/serversave.do +org.owasp.csrfguard.protected.adminExtserverDelete=/lams/admin/extserver/delete.do +org.owasp.csrfguard.protected.adminExtserverDisable=/lams/admin/extserver/disable.do +org.owasp.csrfguard.protected.adminExtserverEnable=/lams/admin/extserver/enable.do + org.owasp.csrfguard.protected.centralSaveUserProfile=/lams/saveprofile.do org.owasp.csrfguard.protected.assessmentDefineLater=/lams/tool/laasse10/authoring/definelater.do