My Oracle Support Banner

如何避免对Oracle WebLogic Server的host header攻击 (Doc ID 2661494.1)

Last updated on MARCH 05, 2021

适用于:

Oracle WebLogic Server - 版本 10.3.6 和更高版本
本文档所含信息适用于所有平台

用途

避免对Oracle WebLogic Server 11g / 12c的host header攻击

Oracle强烈建议通过配置WebLogic Server域的frontend host/port或在应用程序的weblogic.xml中配置redirect-with-absolute-url选项来配置WebLogic以避免HOST Header攻击。 本文档提供了这两个选项的说明。

详细信息

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


文档内容
用途
 避免对Oracle WebLogic Server 11g / 12c的host header攻击
详细信息
 Front-End Host and Port
 The redirect-with-absolute-url option in weblogic.xml
参考

My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.