How XSS Protection works in AEMaaCS?
Lets say, I have anti-samy-rules configuration in AEM on premise environment how do i migrate to AEMaaCS?
Does AEMaaCS will take care xss protection??
Lets say, I have anti-samy-rules configuration in AEM on premise environment how do i migrate to AEMaaCS?
Does AEMaaCS will take care xss protection??
I haven't heard that AEMaaCS has changed the way it protects against XSS, by default there is a set of AntySamy rules that is based on the OWASP recommendation, this list is located under /libs/cq/xssprotection/config.xml
So, if you have customized this list via an overlay, you should have your new AnySamy config in /apps/cq/xssprotection/config.xml, as long as this is part of your codebase, this will be deployed and used by AEMaaCS.
You can find more info here:
https://blogs.perficient.com/2022/10/04/how-good-is-your-aem-security-xss/
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.