Index: lams_central/conf/security/Owasp.CsrfGuard.properties =================================================================== diff -u -rb5d2a6851ee4797e641081bd5e6a1f28f78c30a6 -r8df2f2fd1327e415d338658a64cb110cfdd21872 --- lams_central/conf/security/Owasp.CsrfGuard.properties (.../Owasp.CsrfGuard.properties) (revision b5d2a6851ee4797e641081bd5e6a1f28f78c30a6) +++ lams_central/conf/security/Owasp.CsrfGuard.properties (.../Owasp.CsrfGuard.properties) (revision 8df2f2fd1327e415d338658a64cb110cfdd21872) @@ -29,7 +29,6 @@ org.owasp.csrfguard.protected.adminSessionManagementDelete=/lams/admin/sessionmaintain/delete.do org.owasp.csrfguard.protected.adminUserDisable=/lams/admin/user/disable.do org.owasp.csrfguard.protected.adminUserEdit=/lams/admin/user/edit.do -org.owasp.csrfguard.protected.adminUserRemove=/lams/admin/user/remove.do org.owasp.csrfguard.protected.adminUserDelete=/lams/admin/user/delete.do org.owasp.csrfguard.protected.adminUserSaveDetails=/lams/admin/usersave/saveUserDetails.do org.owasp.csrfguard.protected.adminClearnupPreviewLessons=/lams/admin/cleanupPreviewLessons/delete.do @@ -59,6 +58,7 @@ org.owasp.csrfguard.protected.centralSaveGroupMappings=/lams/organisationGroup/saveGroupMappings.do org.owasp.csrfguard.protected.centralPortraitDelete=/lams/saveportrait/deletePortrait.do org.owasp.csrfguard.protected.centralPortraitSave=/lams/saveportrait.do +org.owasp.csrfguard.protected.centralPasswordChange=/lams/passwordChanged.do #QB org.owasp.csrfguard.protected.centralSaveQuestion=/lams/qb/edit/saveOrUpdateQuestion.do @@ -246,6 +246,11 @@ org.owasp.csrfguard.protected.zoomAuthoringSave=/lams/tool/lazoom10/authoring/updateContent.do org.owasp.csrfguard.protected.zoomAuthoringDefineLater=/lams/tool/lazoom10/authoring/definelater.do +#LKC projects +org.owasp.csrfguard.protected.lkcmonitoringStartPreviewLesson=/lams/monitoring/monitoring/startPreviewLessonJSON.do +org.owasp.csrfguard.protected.lkcmonitoringCopyLearningDesign=/lams/monitoring/monitoring/copyLearningDesign.do + + # Actions to take when a CSRF attack is attempted org.owasp.csrfguard.action.Log=org.owasp.csrfguard.action.Log org.owasp.csrfguard.Logger=org.owasp.csrfguard.log.JavaLogger