Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

V11.8 and V11.10 are duplicates #27

Closed
vanderaj opened this issue Mar 3, 2015 · 1 comment
Closed

V11.8 and V11.10 are duplicates #27

vanderaj opened this issue Mar 3, 2015 · 1 comment
Assignees
Milestone

Comments

@vanderaj
Copy link
Member

vanderaj commented Mar 3, 2015

My apologies if this has already been brought up previously. The requirements V11.8 and V11.10 appear to be very similar in intent. Can anyone help me understand what the primary difference between them is?

V11.8: Verify that HTTP headers and / or other mechanisms for older browsers have been included to protect against clickjacking attacks.

V11.10: Verify that the HTTP header, X-Frame-Options is in use for sites where content should not be viewed in a 3rd-party X-Frame. A common middle ground is to send SAMEORIGIN, meaning only websites of the same origin may frame it.

@vanderaj vanderaj self-assigned this Mar 3, 2015
@vanderaj vanderaj modified the milestone: 2.1 Mar 3, 2015
@vanderaj vanderaj added the bug label Mar 3, 2015
@vanderaj
Copy link
Member Author

Resolved.

@vanderaj vanderaj modified the milestones: 2.1, 3.0 Jul 10, 2015
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant