As part of work on WFLY-9947 (https://github.com/wildfly/wildfly/pull/10974/files), there have been removed server headers Server and X-Powered-By which were in default configuration of the server. These changes should be effective since Wildfly 13/EAP EO13.
To reflect this change, we should probably remove section 2.2.5. Removing Undertow Response Headers in our Server Security Guide.
This JIRA is to update the Migration Guide with this information.
- We need to update it with the information about the removal of the response filter headers from the default Undertow configuration.
- We need update a few configuration examples in 4.5. Web Server Configuration Changes.
- clones
-
JBEAP-14338 [DOC] Remove section 2.2.5. Removing Undertow Response Headers from server security guide
- Closed
- is related to
-
WINDUPRULE-369 EAP 7.2: Removal of response headers from default undertow configuration
- Dev Complete