public class XsrfResourceFilter extends Object implements com.sun.jersey.spi.container.ResourceFilter, com.sun.jersey.spi.container.ContainerRequestFilter
| Modifier and Type | Field and Description |
|---|---|
static String |
NO_CHECK |
static String |
TOKEN_HEADER |
| Constructor and Description |
|---|
XsrfResourceFilter() |
| Modifier and Type | Method and Description |
|---|---|
com.sun.jersey.spi.container.ContainerRequest |
filter(com.sun.jersey.spi.container.ContainerRequest request) |
com.sun.jersey.spi.container.ContainerRequestFilter |
getRequestFilter() |
com.sun.jersey.spi.container.ContainerResponseFilter |
getResponseFilter() |
protected boolean |
isXsrfTokenValid(javax.servlet.http.HttpServletRequest httpServletRequest)
Returns true if the given request xsrf token cookie value
matches the xsrf token submitted in the request form.
|
void |
setHttpContext(com.atlassian.sal.api.web.context.HttpContext httpContext) |
void |
setXsrfTokenValidator(com.atlassian.sal.api.xsrf.XsrfTokenValidator xsrfTokenValidator) |
public static final String TOKEN_HEADER
public static final String NO_CHECK
public void setHttpContext(com.atlassian.sal.api.web.context.HttpContext httpContext)
public void setXsrfTokenValidator(com.atlassian.sal.api.xsrf.XsrfTokenValidator xsrfTokenValidator)
public com.sun.jersey.spi.container.ContainerRequest filter(com.sun.jersey.spi.container.ContainerRequest request)
filter in interface com.sun.jersey.spi.container.ContainerRequestFilterpublic com.sun.jersey.spi.container.ContainerRequestFilter getRequestFilter()
getRequestFilter in interface com.sun.jersey.spi.container.ResourceFilterpublic com.sun.jersey.spi.container.ContainerResponseFilter getResponseFilter()
getResponseFilter in interface com.sun.jersey.spi.container.ResourceFilterprotected boolean isXsrfTokenValid(javax.servlet.http.HttpServletRequest httpServletRequest)
MediaType.APPLICATION_FORM_URLENCODED_TYPE.request - the request to check.Copyright © 2014 Atlassian. All rights reserved.