Extended Security Settings

  • Update to Jenkins 2.164.3 as minimum version required.
  • Update to plugin-pom 4.0.

Installation options
  • JENKINS-56217: Add option to remove one or more HTTP headers from unauthorized responses. In particular, this feature can be used to remove the X-Jenkins version header.

Installation options

Installation options
  • Add option to disable autocomplete of passwords in the signup and login forms.
  • Add option to enable sending the HTTP header X-XSS-Protection: 1; mode=block to enable automatic blocking of suspected cross-site scripting attacks by web browsers that support this feature.

Installation options