Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with HTTPS or Subversion.

Download ZIP
Browse files

Removal of experiment of x-frames-header.

  • Loading branch information...
commit 8c98ecb9972ca2dc8ec3eb8fc245ceda0091da29 1 parent a437590
@shane-tomlinson shane-tomlinson authored
Showing with 2 additions and 2 deletions.
  1. +2 −2 browserid/app.js
View
4 browserid/app.js
@@ -88,7 +88,7 @@ function router(app) {
// Used for a relay page for communication.
app.get('/relay', function(req, res, next ) {
// Allow the relay to be run within a frame
- //res.removeHeader('x-frame-options');
+ res.removeHeader('x-frame-options');
res.render('relay.ejs', {
layout: false,
production: configuration.get('use_minified_resources')
@@ -253,7 +253,7 @@ exports.setup = function(server) {
// prevent framing
server.use(function(req, resp, next) {
- //resp.setHeader('x-frame-options', 'DENY');
+ resp.setHeader('x-frame-options', 'DENY');
next();
});
Please sign in to comment.
Something went wrong with that request. Please try again.