This blog is part of the larger series on all new developer features in SAP HANA SPS 09: http://scn.sap.com/community/developer-center/hana/blog/2014/12/02/sap-hana-sps-09-new-developer-fea...
In this blog we will have a first look at the new miscellaneous security features added to development model in SAP HANA SPS 09.
Since SPS 06, we've had basic CORS support which could be configured at the package level. This support allowed you to either enable or disable CORS, but in SPS 09 we expand the configuration options to allow filtering by origins, headers and http methods.
This new feature allows you to control if the browser should allow a page within this HANA page to be rendered within a frame, iframe, or object. This helps to avoid clickjacking attacks by keeping content from being embedded within a malicious site.
Possible values:
New XSJS API ($.security.AntiVirus) to access and use the SAP Virus Scan Interface from your server side JavaScript coding.
Code Sample for using the new Virus Scan Interface from XSJS:
try {
//create a new $.security.AntiVirus object using the default profile
var av = new $.security.AntiVirus();
av.scan($.request.body);
} catch (e) {
$.response.setBody(e.toString());
}
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
User | Count |
---|---|
44 | |
23 | |
17 | |
15 | |
11 | |
9 | |
7 | |
7 | |
7 | |
7 |