security.yaml 2.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899
  1. title: PLUGIN_ADMIN.SECURITY
  2. form:
  3. validation: loose
  4. fields:
  5. xss_section:
  6. type: section
  7. title: PLUGIN_ADMIN.XSS_SECURITY
  8. underline: true
  9. xss_whitelist:
  10. type: selectize
  11. size: large
  12. label: PLUGIN_ADMIN.XSS_WHITELIST_PERMISSIONS
  13. help: PLUGIN_ADMIN.XSS_WHITELIST_PERMISSIONS_HELP
  14. placeholder: 'admin.super'
  15. classes: fancy
  16. validate:
  17. type: commalist
  18. xss_enabled.on_events:
  19. type: toggle
  20. label: PLUGIN_ADMIN.XSS_ON_EVENTS
  21. highlight: 1
  22. options:
  23. 1: PLUGIN_ADMIN.YES
  24. 0: PLUGIN_ADMIN.NO
  25. default: true
  26. validate:
  27. type: bool
  28. xss_enabled.invalid_protocols:
  29. type: toggle
  30. label: PLUGIN_ADMIN.XSS_INVALID_PROTOCOLS
  31. highlight: 1
  32. options:
  33. 1: PLUGIN_ADMIN.YES
  34. 0: PLUGIN_ADMIN.NO
  35. default: true
  36. validate:
  37. type: bool
  38. xss_enabled.moz_binding:
  39. type: toggle
  40. label: PLUGIN_ADMIN.XSS_MOZ_BINDINGS
  41. highlight: 1
  42. options:
  43. 1: PLUGIN_ADMIN.YES
  44. 0: PLUGIN_ADMIN.NO
  45. default: true
  46. validate:
  47. type: bool
  48. xss_enabled.html_inline_styles:
  49. type: toggle
  50. label: PLUGIN_ADMIN.XSS_HTML_INLINE_STYLES
  51. highlight: 1
  52. options:
  53. 1: PLUGIN_ADMIN.YES
  54. 0: PLUGIN_ADMIN.NO
  55. default: true
  56. validate:
  57. type: bool
  58. xss_enabled.dangerous_tags:
  59. type: toggle
  60. label: PLUGIN_ADMIN.XSS_DANGEROUS_TAGS
  61. highlight: 1
  62. options:
  63. 1: PLUGIN_ADMIN.YES
  64. 0: PLUGIN_ADMIN.NO
  65. default: true
  66. validate:
  67. type: bool
  68. xss_dangerous_tags:
  69. type: selectize
  70. size: large
  71. label: PLUGIN_ADMIN.XSS_DANGEROUS_TAGS_LIST
  72. classes: fancy
  73. validate:
  74. type: commalist
  75. uploads_section:
  76. type: section
  77. title: PLUGIN_ADMIN.UPLOADS_SECURITY
  78. underline: true
  79. uploads_dangerous_extensions:
  80. type: selectize
  81. size: large
  82. label: PLUGIN_ADMIN.UPLOADS_DANGEROUS_EXTENSIONS
  83. help: PLUGIN_ADMIN.UPLOADS_DANGEROUS_EXTENSIONS_HELP
  84. classes: fancy
  85. validate:
  86. type: commalist