[MOSIP-44770] Actuator endpoints are publicly accessible with broad exposure.#1845
[MOSIP-44770] Actuator endpoints are publicly accessible with broad exposure.#1845Md-Humair-KK wants to merge 2 commits into
Conversation
Signed-off-by: Md-Humair-KK <mdhumair.kankudti@gmail.com>
Signed-off-by: Md-Humair-KK <mdhumair.kankudti@gmail.com>
|
No actionable comments were generated in the recent review. 🎉 ℹ️ Recent review info⚙️ Run configurationConfiguration used: Repository UI Review profile: ASSERTIVE Plan: Pro Run ID: 📒 Files selected for processing (2)
WalkthroughThe PR hardens Spring Security and Actuator endpoint configurations by replacing broad wildcard endpoint exposure with specific endpoint whitelists and eliminating unnecessary information disclosure in both application-default.properties and bootstrap.properties. ChangesActuator Endpoint Security Hardening
Estimated code review effort🎯 2 (Simple) | ⏱️ ~10 minutes Poem
🚥 Pre-merge checks | ✅ 5✅ Passed checks (5 passed)
✏️ Tip: You can configure your own custom pre-merge checks in the settings. ✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
Summary by CodeRabbit