web web contextConfigLocation /WEB-INF/sso/applicationContext-ssoClient.xml javax.faces.STATE_SAVING_METHOD client facelets.SKIP_COMMENTS true org.operamasks.faces.IMPLICIT_NAVIGATION true org.operamasks.faces.COMPATIBLE_NOT_STRICT false org.operamasks.faces.SKIN waf javax.faces.DEFAULT_SUFFIX .xhtml org.operamasks.ATTRIBUTE_SETTING_CONFIG_FILE /WEB-INF/attributeSetting.properties facelets.LIBRARIES /WEB-INF/taglib/waf.taglib.xml productionMode production CAS Single Sign Out Filter org.jasig.cas.client.session.SingleSignOutFilter encodingFilter org.springframework.web.filter.CharacterEncodingFilter encoding UTF-8 forceEncoding true encodingFilter *.do encodingFilter *.jsp SHRRequestParamWrapFilter com.kingdee.shr.base.syssetting.web.filter.SHRRequestParameterWrapFilter enableSHRRequestParamWrapFilter true SHRRequestParamWrapFilter /* XSSFilter com.kingdee.shr.base.syssetting.web.filter.XSSFilter uipkAndHandlerWhiteList com.kingdee.shr.base.syssetting.app.UIView.form, sourcecompare, com.kingdee.shr.base.syssetting.app.PrivacyAgreement.form, com.kingdee.shr.baseconfig.app.DocumentationConfig.form, com.kingdee.shr.base.syssetting.app.FieldRule.form XSSFilter /* SQLInjectionFilter com.kingdee.shr.base.syssetting.web.filter.SQLInjectionFilter enableSQLInjectionFilter true uipkWhiteList com.kingdee.shr.dataplatform.app.CustomSQL.form, com.kingdee.shr.dataplatform.app.DataSetConfig.form, com.kingdee.shr.base.syssetting.app.UIView.form, com.kingdee.shr.base.syssetting.app.FieldRange.form, com.kingdee.shr.base.syssetting.app.ListFilterSolution.form, com.kingdee.shr.base.syssetting.app.ListSetSolution.form, shr.report.ReportDefGuidev2.0, com.kingdee.eas.rpts.ctrlsqldesign.app.KSQLReport.form, com.kingdee.shr.compensation.app.FormulaFunc.form, com.kingdee.shr.compensation.app.FormulaTmpTable.form sqlKeyWord drop,delete,truncate,update,insert,dbo.sysdatabases, dbo.sysdatabases--,information_schema.columns,table_schema, xp_cmdshell,group_concat,table_schema,declare,sitename,||, exec,execute,create,table,grant,use,column_name,union,*,master,;,-,+,//,/,%,#,all_tab_columns,ascii,substring sqlinjectfilterparams permItemId,personId,personID,relatedFieldId,serviceId,rootId,nodeId,billId,orgId,orgid,serviceName,uipk,sorterItems,parameters,sidx,sord,query,staffingId,staffId,uiClass,keyField,nd,objectID,proposerName,attendPeriodId,attendanceGroupID,proposerId,attendPolicyId,orgLongNum,bizManageTypeID,billIdParam,personid,positionId SQLInjectionFilter /* Light App Login Filter com.kingdee.shr.lightapp.filter.LightAppLoginFilter Light App Login Filter /* AppScanAttackFilter com.kingdee.shr.base.syssetting.web.filter.AppScanAttackFilter enableAppScanAttackFilter true AppScanAttackFilter /* DisableUrlSessionFilter com.kingdee.shr.base.syssetting.web.filter.DisableUrlSessionFilter excludePattern method=print+,method=import+,handler=com.kingdee.shr.base.syssetting.web.handler.ImportInfoHandler,uipk=com.kingdee.shr.report.app.ReportDef.list DisableUrlSessionFilter *.do DisableUrlSessionFilter *.jsp SHRAuthentiactionFilter com.kingdee.shr.base.syssetting.web.filter.SHRAuthenticationFilter excludePattern SHRAuthentiactionFilter *.do SHRAuthentiactionFilter *.jsp SHRAuthentiactionFilter *.html SHRAuthentiactionFilter *.htm CAS Authentication Filter org.springframework.web.filter.DelegatingFilterProxy targetBeanName casAuthenticationFilter CAS Authentication Filter /* CAS Validation Filter org.springframework.web.filter.DelegatingFilterProxy targetBeanName casTicketValidationFilter CAS Validation Filter /* CAS HttpServletRequest Wrapper Filter org.jasig.cas.client.util.HttpServletRequestWrapperFilter CAS HttpServletRequest Wrapper Filter /* ContextConstructorFilter com.kingdee.bos.sso.client.filter.ContextConstructorFilter ContextConstructorFilter /* CAS Validation Filter /wfdesigner/* CAS Authentication Filter /wfdesigner/* CAS Authentication Filter /servlet/BillServlet CAS Authentication Filter /servlet/ListServlet CAS Validation Filter /servlet/BillServlet CAS Validation Filter /servlet/ListServlet CAS Authentication Filter /wf-portal/* CAS Validation Filter /wf-portal/* CAS HttpServletRequest Wrapper Filter /wf-portal/* CAS Authentication Filter /workflow/* CAS Validation Filter /workflow/* CAS HttpServletRequest Wrapper Filter /workflow/* CAS Authentication Filter /billdigesttools/*.jsp CAS Validation Filter /billdigesttools/*.jsp CAS HttpServletRequest Wrapper Filter /billdigesttools/*.jsp SHRWeb RPC Filter com.kingdee.shr.base.syssetting.filter.SHRWebRPCFilter SHRWeb RPC Filter /* User Monitor com.kingdee.eas.hr.base.web.UserMonitorFilter User Monitor *.action User Monitor *.do User Monitor *.jsp User Monitor *.html HR context Filter com.kingdee.shr.base.filter.HRContextFilter HR context Filter *.action HR context Filter *.do HR context Filter *.jsp HR context Filter *.html Upgrade Monitor com.kingdee.shr.base.syssetting.filter.UpgradeMonitorFilter urlWhiteListed /index.jsp, /login.do, /notUpgraded.jsp, /logout.jsp, /personSquarePhoto.do, /serviceMenu.do, /heartbeat.do, /shr/msf/service.do, /promptF7.do, /appData.do, /ces.jsp, /clubService/getUnReadNews.do, /web_frame/easrpc/login.do, /web_frame/easrpc/frame.do, /shr_loginout/logoutAndReleaseResource.do uipkWhiteListed com.kingdee.eas.hr.mvdt.app.ControlDataMoveProject.form, shr.org.AdminOrgUnitDataMove_list, com.kingdee.eas.basedata.org.app.OrgUnitLayerType.F7, shr.org.AdminOrgUnitDataMove_form, com.kingdee.shr.shrimport.app.ImportTask.userList handlerWhiteListed com.kingdee.eas.hr.mvdt.web.handler.ControlDataMoveProjectHandler, com.kingdee.eas.hr.mvdt.web.handler.DataMoveProjectHandler, com.kingdee.eas.hr.mvdt.web.handler.SHRMvTableListHandler, com.kingdee.shr.base.syssetting.web.handler.ImportInfoHandler, com.kingdee.eas.hr.org.web.handler.OrgUnitListHandler, com.kingdee.eas.hr.org.web.handler.OrgUnitLayerTypeF7Handler, com.kingdee.shr.hr.mvdt.handler.ControlAdminDataMoveHandler, com.kingdee.eas.hr.org.web.handler.OrgUnitEditHandler, com.kingdee.shr.base.syssetting.web.handler.SystemConfigSolutionHandler, com.kingdee.shr.hr.mvdt.handler.ControlCompensationDataMoveHandler, com.kingdee.shr.base.syssetting.web.handler.LogJarClassInfoToolsHandler Upgrade Monitor *.action Upgrade Monitor *.do Upgrade Monitor *.jsp Upgrade Monitor *.html org.springframework.web.context.ContextLoaderListener com.kingdee.eas.cp.common.url.service.web.WebSessionListener OAToSHR com.kingdee.eas.custom.sso.OAToSHR OAToSHR /api/oAToSHR OAToMbos com.kingdee.eas.custom.sso.OAToMBos OAToMbos /api/oAToMBos batchApprove com.kingdee.eas.custom.sso.BatchApprove batchApprove /api/batchApprove BuffaloServlet net.buffalo.web.servlet.ApplicationServlet debug true BuffaloServlet /BUFFALO/* Logout Servlet /logout mht message/rfc822 This is the servlet needed for cache.type servlet, returns the packed resources PackServlet PackServlet net.sf.packtag.servlet.PackServlet PackServlet styles/combined*.css PackServlet combined*.js PackServlet styles/external*.css PackServlet external*.js com.kingdee.bos.webframework.SCRIPT_DEBUG false com.kingdee.bos.webframework.SUPPORT_MULTILANG false com.kingdee.bos.webframework.LANGS L1,L2,L3 WafHttpRequestFilter com.kingdee.shr.base.syssetting.filter.ShrHttpRequestFilter CONVERSATION_SUPPORT true RESPONSE_BUFFER_SIZE 5000 CAS Authentication Filter *.do CAS Validation Filter *.do CAS HttpServletRequest Wrapper Filter *.do Waf2ContextFilter com.kingdee.shr.base.syssetting.filter.SHRContextFilter Waf2ContextFilter *.do WafHttpRequestFilter *.do SHRRequestWorkPlatformFilter com.kingdee.shr.base.syssetting.web.filter.SHRRequestWorkPlatformFilter SHRRequestWorkPlatformFilter *.html MVCServlet org.springframework.web.servlet.DispatcherServlet contextConfigLocation /WEB-INF/properties/applicationContext.xml 1 MVCServlet *.do 500 /500.jsp 404 /404.jsp com.kingdee.shr.base.syssetting.web.listener.SHRAppListener com.kingdee.shr.base.syssetting.web.listener.SHRSessionListener index.jsp docx application/vnd.openxmlformats-officedocument.wordprocessingml.document xlsx application/vnd.openxmlformats-officedocument.spreadsheetml.sheet pptx application/vnd.openxmlformats-officedocument.presentationml.presentation