Skip to content
Snippets Groups Projects
Commit f8319312 authored by Dale Sikkema's avatar Dale Sikkema
Browse files

MAGETWO-16192: Security: Clickjacking solution - introduce X-Frame-Options

 - use plugin to send xFrameOptions header when response is sent
 - get inject header value into plugin via DI argument injection
 - setup a config field in env.php to contain non-backend header values
parent 86646fca
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment