quinta-feira, 26 de novembro de 2020

Cerberus ftp Share public Link - Error Client-provided host information failed validation

In versions 11.0 and 10.0.17 of Cerberus FTP Server, we fixed a security issue in which password reset is vulnerable to HTTP host header attack, which allowed malicious password reset emails. Administrators must now configure an “allow list” of acceptable domains, host names, or IP addresses that can be accepted from the host header. Any domains not on the "allow list" will not be allowed to reset passwords or create public shares.

To add a domain to the "allow list":

  1. Open the Server Manager.
  2. Select the Protocols page.
  3. Select the HTTP and HTTPS tab.
  4. Add a domain, host name, or IP address to the comma-separated list for Client Domain Allow List.
  5. Press the Save button on the Server Manager to save your settings.
https://support.cerberusftp.com/hc/en-us/articles/360010400559-Why-are-my-users-getting-errors-when-resetting-passwords-or-creating-public-shares-after-I-upgraded-to-v11-0-or-v10-0-17-?_ga=2.70618512.1682828438.1577314295-75428674.1566008723

Precisa de suporte remoto em T.I? Entre em contato, 40 reais a conexão, cobramos apenas se resolver! WhatsApp (11 999746088)

Nenhum comentário:

Postar um comentário