Prevent errors from displaying on web forms
Having errors which display the internal workings of a product are a huge security no no. How can we prevent this?
I have seen a few examples. One that comes to mind is printing the settings found within ldap-config.properties when they are violated.
--
Marshall
Please sign in to leave a comment.
We do have syntax validation for this file, but it didn't work for some reason.
Could you please post a bug to our issue tracker, and attach your ldap-config properties file, text of exception, and a screenshot of web page. Attachments can be made private.
Thanks
I created a bug TW-26139.