[Freeipa-devel] [PATCH] 0008 Add X-Frame-Options and frame-ancestors options

Simo Sorce simo at redhat.com
Thu Mar 10 18:22:55 UTC 2016


On Thu, 2016-03-10 at 19:20 +0100, Pavel Vomacka wrote:
> 
> On 03/10/2016 07:02 PM, Simo Sorce wrote:
> > On Thu, 2016-03-10 at 18:47 +0100, Pavel Vomacka wrote:
> >> Hi,
> >>
> >> These two options allow preventing clickjacking attacks. They don't
> >> allow open FreeIPA in frame, iframe or object element.
> > Will these apply to the whole server or just to /ipa ?
> >
> Yes, you are right, these apply to whole server. In this new patch they 
> are applied only on /ipa.
> 
> --
> Pavel^3 Vomacka

Thanks,
LGTM

Simo.

-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-devel mailing list