From cb9f3d00d4a14bb810f72bdd53998c70cc6c5cd9 Mon Sep 17 00:00:00 2001 From: Kyle Spearrin Date: Mon, 18 Sep 2017 18:25:29 -0400 Subject: [PATCH] cannot block iframes due to duo and u2f --- util/Setup/Program.cs | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/util/Setup/Program.cs b/util/Setup/Program.cs index 69b90ad57..9b5eb1969 100644 --- a/util/Setup/Program.cs +++ b/util/Setup/Program.cs @@ -333,8 +333,8 @@ server {{ } sw.WriteLine($@" - # X-Frame-Options is to prevent from clickJacking attack - add_header X-Frame-Options SAMEORIGIN; + # X-Frame-Options is to prevent from click-jacking attack + #add_header X-Frame-Options SAMEORIGIN; # disable content-type sniffing on some browsers. add_header X-Content-Type-Options nosniff;