mirror of
https://github.com/curl/curl.git
synced 2026-08-25 03:33:30 +03:00
libcurl: Restrict redirect schemes (follow-up)
- Allow FTPS on redirect.
- Update default allowed redirect protocols in documentation.
Follow-up to 6080ea0.
Ref: https://github.com/curl/curl/pull/4094
Closes https://github.com/curl/curl/pull/4115
This commit is contained in:
parent
647e726d78
commit
e8442e4ffc
7 changed files with 18 additions and 16 deletions
|
|
@ -11,7 +11,8 @@ Example, allow only HTTP and HTTPS on redirect:
|
|||
|
||||
curl --proto-redir -all,http,https http://example.com
|
||||
|
||||
By default curl will allow all protocols on redirect except several disabled
|
||||
for security reasons: Since 7.19.4 FILE and SCP are disabled, and since 7.40.0
|
||||
SMB and SMBS are also disabled. Specifying \fIall\fP or \fI+all\fP enables all
|
||||
protocols on redirect, including those disabled for security.
|
||||
By default curl will allow HTTP, HTTPS, FTP and FTPS on redirect (7.65.2).
|
||||
Older versions of curl allowed all protocols on redirect except several
|
||||
disabled for security reasons: Since 7.19.4 FILE and SCP are disabled, and
|
||||
since 7.40.0 SMB and SMBS are also disabled. Specifying \fIall\fP or \fI+all\fP
|
||||
enables all protocols on redirect, including those disabled for security.
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue