-
Notifications
You must be signed in to change notification settings - Fork 191
Description
Describe your motivation
Currently the heartbeat used by Vaadin Flow is using text/plain as content type - which is disregarded because it makes it harder for WAFs to guess the correct content. Some WAFs even block it by default or print a warning... alarming the SOC or other teams..
Describe the solution you'd like
- remove content type (there is no body anyway)
- Optional: return 204 (you also don't send stuff back)
Describe alternatives you've considered
- Allow text/plain in WAF
- Ignore problems
- Tell your ops: don't worry.. its normal
Related to #17728
Reactions are currently unavailable
Metadata
Metadata
Assignees
Type
Projects
Status
✅ Closed
Status
Done