1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27
|
<?xml version="1.0" encoding="UTF-8"?>
<!--
This test file exemplifies a dynamic-insertion rule.
Protection #1: All instances of "</body>" in the response body will be replaced by
"this is a test".
-->
<policy>
<settings>
<mode>redirect</mode>
<error-handling>
<default-redirect-page>/security/error.jsp</default-redirect-page>
<block-status>403</block-status>
</error-handling>
</settings>
<outbound-rules>
<dynamic-insertion pattern="</body>">
<replacement><![CDATA[this is a test]]></replacement>
</dynamic-insertion>
</outbound-rules>
</policy>
|