Skip to content

HTTPS clone URL

Subversion checkout URL

You can clone with
or
.
Download ZIP
Browse files

set X-Frame-Options to SAMEORIGIN in admin pages #273

  • Loading branch information...
commit 2c457f2df1eefb6e8a9709b6158a0e15c383543b 1 parent 916849b
@tdtds tdtds authored
Showing with 2 additions and 1 deletion.
  1. +2 −1  tdiary/dispatcher/update_main.rb
View
3  tdiary/dispatcher/update_main.rb
@@ -33,7 +33,8 @@ def run
'Content-Type' => 'text/html',
'charset' => conf.encoding,
'Content-Length' => body.bytesize.to_s,
- 'Vary' => 'User-Agent'
+ 'Vary' => 'User-Agent',
+ 'X-Frame-Options' => 'SAMEORIGIN'
}
end
body = ( request.head? ? '' : body )

1 comment on commit 2c457f2

@hsbt
Owner

:100:

Please sign in to comment.
Something went wrong with that request. Please try again.