Fix sql injection vulnerability
[portal.git] / ecomp-portal-BE-os / src / main / webapp / WEB-INF / web.xml
index d31739f..1181a2f 100644 (file)
@@ -34,7 +34,7 @@
  
   ============LICENSE_END============================================
  
-  ECOMP is a trademark and service mark of AT&T Intellectual Property.
+  
   -->
 
 <web-app xmlns="http://java.sun.com/xml/ns/j2ee" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://java.sun.com/xml/ns/j2ee http://java.sun.com/xml/ns/j2ee/web-app_2_4.xsd" version="2.4">
@@ -71,7 +71,7 @@
        </listener>
        <filter>
                <filter-name>springSessionRepositoryFilter</filter-name>
-               <filter-class>org.springframework.web.filter.DelegatingFilterProxy</filter-class>
+               <filter-class>org.onap.portalapp.music.filter.MusicSessionRepositoryFilter</filter-class>
        </filter>
        <filter-mapping>
                <filter-name>springSessionRepositoryFilter</filter-name>
            <filter-name>SecurityXssFilter</filter-name>
            <url-pattern>/*</url-pattern>
        </filter-mapping>
+       <!-- <filter>
+               <filter-name>CadiAuthFilter</filter-name>
+               <filter-class>org.onap.portalsdk.core.onboarding.crossapi.CadiAuthFilter</filter-class>
+               <init-param>
+                       <param-name>cadi_prop_files</param-name>
+        Add Absolute path of cadi.properties
+                       <param-value>{Path}/cadi.properties
+                       </param-value>
+               </init-param>
+         Add param values with comma delimited values
+               <init-param>
+                       <param-name>include_url_endpoints</param-name>
+                       <param-value>/auxapi/*</param-value>
+               </init-param>
+               <init-param>
+                       <param-name>exclude_url_endpoints</param-name>
+                       <param-value>/api/v3/analytics,/api/v3/storeAnalytics</param-value>
+               </init-param>
+       </filter>
+       <filter-mapping>
+               <filter-name>CadiAuthFilter</filter-name>
+               <url-pattern>/auxapi/v3/*</url-pattern>
+       </filter-mapping>
+       <filter-mapping>
+               <filter-name>CadiAuthFilter</filter-name>
+               <url-pattern>/auxapi/v4/*</url-pattern>
+               
+       </filter-mapping> -->
 </web-app>