tailscale/ipn/localapi
Brad Fitzpatrick 4a82b317b7 ipn/{ipnlocal,localapi}: use strs.CutPrefix, add more domain validation
The GitHub CodeQL scanner flagged the localapi's cert domain usage as a problem
because user input in the URL made it to disk stat checks.

The domain is validated against the ipnstate.Status later, and only
authenticated root/configured users can hit this, but add some
paranoia anyway.

Change-Id: I373ef23832f1d8b3a27208bc811b6588ae5a1ddd
Signed-off-by: Brad Fitzpatrick <bradfitz@tailscale.com>
2022-09-16 05:52:33 -07:00
..
cert_test.go ipn/{ipnlocal,localapi}: use strs.CutPrefix, add more domain validation 2022-09-16 05:52:33 -07:00
cert.go ipn/{ipnlocal,localapi}: use strs.CutPrefix, add more domain validation 2022-09-16 05:52:33 -07:00
disabled_stubs.go wasm: exclude code that's not used on iOS for Wasm too 2022-06-06 13:52:52 -07:00
localapi.go cmd/tailscaled, tailcfg, hostinfo: add flag to disable logging + support 2022-09-13 11:47:36 -07:00
profile.go wasm: exclude code that's not used on iOS for Wasm too 2022-06-06 13:52:52 -07:00