Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[建议] 希望白名单可以针对某一攻击类型加白 #430

Open
Fz-github opened this issue Nov 8, 2023 · 3 comments
Open

[建议] 希望白名单可以针对某一攻击类型加白 #430

Fz-github opened this issue Nov 8, 2023 · 3 comments
Labels
enhancement New feature or request

Comments

@Fz-github
Copy link

背景与遇到的问题

类似开发文档的站点容易触发XSS告警,但加白的时候,把整个url都加白了,其他攻击类型也检测不到了。所以希望加白名单的时候可以针对某一攻击类型加白。

建议的解决方案

加白名单的时候可以针对某一攻击类型加白。

@DeronW
Copy link
Collaborator

DeronW commented Nov 8, 2023

iShot_2023-11-08_10 45 11

可以的,在 “防护配置”》“语义分析” 里把 “XSS检测” 禁用就可以了

@Fz-github
Copy link
Author

@DeronW 但我只想这一个路径加白XSS,而不是整一个站点都加白XSS。

@Fz-github
Copy link
Author

@DeronW 在 “防护配置”》“语义分析” 里把 “XSS检测” 禁用,并没有效果,一样会有XSS告警。
image
image

@Lorna0 Lorna0 added the enhancement New feature or request label Nov 10, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

3 participants