提交 eddfdc9e 编写于 作者: D Dmitriy Zaporozhets

Merge pull request #7558 from bbodenmiller/patch-4

change X-Frame-Options to SAMEORIGIN for nginx SSL config
......@@ -84,7 +84,7 @@ server {
ssl_prefer_server_ciphers on;
add_header Strict-Transport-Security max-age=63072000;
add_header X-Frame-Options DENY;
add_header X-Frame-Options SAMEORIGIN;
add_header X-Content-Type-Options nosniff;
## Individual nginx logs for this GitLab vhost
......
Markdown is supported
0% .
You are about to add 0 people to the discussion. Proceed with caution.
先完成此消息的编辑!
想要评论请 注册