Complete 'HTTP Security Header' documentation.

This commit is contained in:
2018-04-23 14:46:50 +02:00
parent 4b301df496
commit a963fb33ec
2 changed files with 191 additions and 1 deletions

View File

@ -41,7 +41,7 @@ Header always set X-Frame-Options "SAMEORIGIN"
# - if it detects an attack rather than sanitising
# - the script.
# -
Header always set X-Content-Type-Options "nosniff"
Header always set X-XSS-Protection "1; mode=block"
# - X-Content-Type-Options