Released January 6, 2023
10.05.02 Resources (Release Date: 1/06/2023)
Bugs Fixed#
| Bug ID | Component | Description |
|---|---|---|
| MM-12524 | Administrative Interface | Administrative HTTPS redirect is not performed when Administration and Runtime share a common secure origin |
Customer Impact#
When a Secure URL to Administration is configured, the following requests will be rejected:
-
- All http:// requests to json.mvc with Session_Type “admin”
-
- Any http:// request to admin.mvc that uses a method other than GET
-
- Any http:// GET request to admin.mvc that specifies the Screen or Action parameters
These rules may break requests from Synchro, if it is configured to use an http:// URL, or other external integrations that are making non-encrypted calls into admin.mvc. JSON API calls using API authentication should not be impacted.