A friendly place for programming greenhorns!
Big Moose Saloon
Register / Login
Win a copy of
EJB 3 in Action
this week in the
EJB and other Java EE Technologies
HTTP Request Forwarding (Web Proxy) Detected
Joined: Oct 09, 2013
Oct 09, 2013 06:44:46
I am using
I want to disable the HTTP Request Forwarding (Web Proxy) capability.
Right now Web Proxy may be enabled in the Jboss.
I want to know is there any way to disable the same.
Because of Web Proxy, any malicious attacker can attack other sites using Jboss server.
So that server may be vulnerable for Man in the Middle attack.
The server is scanned with IBM Security AppScan. It is giving the above vulnerability error.
Through JBoss server it is able to access external sites.
The same with Apache can be achieved with ProxyRequests off direcctive.
But, in our case , we are not using Apache web server. It is a standalone Jboss server.
Please suggest the solution to disable HTTP request forwarding.
I agree. Here's the link:
subject: HTTP Request Forwarding (Web Proxy) Detected
Hacked WebSites used to install parasites
Need an advice for the J2EE architecture. does soap can help in request redirection?
HTTP Request froward to other application
Apache in DMZ and HTTPS
JBOSS - Disable HTTP Proxy Server Caching
All times are in JavaRanch time: GMT-6 in summer, GMT-7 in winter
| Powered by
Copyright © 1998-2014