Index: lams_central/web/WEB-INF/web.xml =================================================================== diff -u -r191a7d2638423869208e4783438aad7750423bdc -rc5a709e4cb42d0729ad3fbd814714fb27dd844df --- lams_central/web/WEB-INF/web.xml (.../web.xml) (revision 191a7d2638423869208e4783438aad7750423bdc) +++ lams_central/web/WEB-INF/web.xml (.../web.xml) (revision c5a709e4cb42d0729ad3fbd814714fb27dd844df) @@ -41,6 +41,14 @@ parentContextKey context.central + + Owasp.CsrfGuard.Config + WEB-INF/Owasp.CsrfGuard.properties + + + Owasp.CsrfGuard.Config.Print + true + UrlRewriteFilter @@ -69,6 +77,10 @@ org.lamsfoundation.lams.web.filter.LocaleFilter + + CSRFGuard + org.owasp.csrfguard.CsrfGuardFilter + UrlRewriteFilter @@ -147,7 +159,12 @@ LocaleFilter /ckeditor/* - + + CSRFGuard + /* + + + org.springframework.web.context.ContextLoaderListener @@ -160,6 +177,13 @@ + + org.owasp.csrfguard.CsrfGuardServletContextListener + + + org.owasp.csrfguard.CsrfGuardHttpSessionListener + + GetRecordingServlet org.lamsfoundation.lams.webservice.GetRecordingServlet @@ -497,6 +521,9 @@ /services/SPEnrolment + + + csv text/plain @@ -560,6 +587,11 @@ tags-lams /WEB-INF/tlds/lams/lams.tld + + + csrfguard + /WEB-INF/tlds/security/csrfguard.tld +