Class SameOriginFilterForHtml

java.lang.Object
org.eclnt.jsfserver.util.SameOriginFilterForHtml
All Implemented Interfaces:
javax.servlet.Filter, ICCServerConstants

public class SameOriginFilterForHtml extends Object implements javax.servlet.Filter, ICCServerConstants
Filter to send back security policy "X-Frame-Options". By default "sameorigin" is returned - but it follow the configuration of "embedableasiframe" that is done on system.xml level.

This filter is only applied for URL to ".html" files.

It is used for all the bridge pages that are loaded as IFRAMEs.
  • Constructor Details

    • SameOriginFilterForHtml

      public SameOriginFilterForHtml()
  • Method Details

    • doFilter

      public void doFilter(javax.servlet.ServletRequest servletrequest, javax.servlet.ServletResponse servletresponse, javax.servlet.FilterChain filterchain) throws IOException, javax.servlet.ServletException
      Specified by:
      doFilter in interface javax.servlet.Filter
      Throws:
      IOException
      javax.servlet.ServletException
    • init

      public void init(javax.servlet.FilterConfig filterconfig)
      Specified by:
      init in interface javax.servlet.Filter
    • destroy

      public void destroy()
      Specified by:
      destroy in interface javax.servlet.Filter