weaver_security_custom_rules_E9.xml 3.71 KB
<?xml version="1.0" encoding="UTF-8"?>
<root>
	
	<!--special rule-->
	<special-non>
		<urls>
			
			 <url>
				<value>/api/mobilemode/admin/designer/saveHomepageContent</value>
				<params>
				 <param>
				  <value>content</value>
				  <rules>
				  	<rule>##sqlkeyword1##</rule>
				  </rules>
				 </param>
				  <param>
				  <value>pageAttr</value>
				  <rules>
				  	<rule>##sqlkeyword1##</rule>
				  </rules>
				 </param>
				 <param>
				  <value>mecJsonStr</value>
				  <rules>
				  	<rule>##sqlkeyword1##</rule>
				  </rules>
				 </param>
				 <param>
				  <value>uicontent</value>
				  <rules>
				  	<rule>##sqlkeyword1##</rule>
				  </rules>
				 </param>
				 <param>
					  <!--  List,urlList Hidden field -->
					  <value>MADL_Field_Json</value>
					  <rules>
							<rule></rule>
					  </rules>
				 </param>
				  <param>
					  <!-- List Hidden field -->
					  <value>btnScript</value>
					  <rules>
							<rule></rule>
					  </rules>
				 </param>
				</params>
			 </url>
			
			<url>
				<value>/api/blog/base/saveOrUpdateBlog</value>
				<params>
					<param>
						<value>content</value>
						<rules>
							<rule>##CONST:CODE##</rule>
						</rules>
					</param>
				</params>
			</url>
			<url>
				<value>/api/formmode/exceldesign/submitSaveScript</value>
				<params>
					<param>
						<value>scripts</value>
						<rules>
							<rule>##CONST:CODE##</rule>
						</rules>
					</param>
				</params>
			</url>
			<url>
				<value>/api/sms/set/saveSmsServiceSet</value>
				<params>
					<param>
						<value>props</value>
						<rules>
							<rule>##CONST:CODE##</rule>
						</rules>
					</param>
					<param>
						<value>sql</value>
						<rules>
							<rule>##CONST:CODE##</rule>
						</rules>
					</param>
				</params>
			</url>
			<url>
				<value>/api/workflow/exceldesign/submitSaveScript</value>
				<params>
					<param>
						<value>scripts</value>
						<rules>
							<rule>##CONST:CODE##</rule>
						</rules>
					</param>
				</params>
			</url>

			 <url>
					<value>/api/cube/mode/list/checkfileAddress</value>
					<params>
					   <param>
						<is-dynamic-param>0</is-dynamic-param>
						<value>hreftarget</value>
						<rules>
						  <rule>##CONST:CODE##</rule>
						</rules>
					  </param>
					</params>
				 </url>

				 <url>
					<value>/workflow/exceldesign/excelPreView.jsp</value>
					<params>
					   <param>
						<is-dynamic-param>0</is-dynamic-param>
						<value>datajsonFormula</value>
						<rules>
						  <rule>##CONST:CODE##</rule>
						</rules>
					  </param>
					</params>
				 </url>
				
		</urls>
	</special-non>
	<!--regexp params-->
	<special-reg>
		<urls>
			
			<url>
				<value>/api/workflow/reqform/requestOperation</value>
				<params>
					<param>
						<value>^fieldsql(\-)?\d+$</value>
						<rules>
							<rule>##sqlkeyword1##</rule>
						</rules>
					</param>
					<param>
						<value>^remark\d*$</value>
						<rules>
							<rule>##CONST:FREEHTML##</rule>
						</rules>
					</param>
				</params>
			</url>
			<url>
				<value>/api/workflow/reqform/remarkOperate</value>
				<params>
					<param>
						<value>^fieldsql(\-)?\d+$</value>
						<rules>
							<rule>##sqlkeyword1##</rule>
						</rules>
					</param>
					<param>
						<value>^remark\d*$</value>
						<rules>
							<rule>##CONST:FREEHTML##</rule>
						</rules>
					</param>
				</params>
			</url>
			<url>
				<value>/api/workflow/reqform/remarkOperation</value>
				<params>
					<param>
						<value>^fieldsql(\-)?\d+$</value>
						<rules>
							<rule>##sqlkeyword1##</rule>
						</rules>
					</param>
					<param>
						<value>^remark\d*$</value>
						<rules>
							<rule>##CONST:FREEHTML##</rule>
						</rules>
					</param>
				</params>
			</url>
			
		</urls>
	</special-reg>
</root>