[extensions-web] secure: disabled site rendering in frames



commit 4047b94ce30786462a97e55ec1d33c1d0e898636
Author: Yuri Konotopov <ykonotopov gnome org>
Date:   Thu Nov 3 19:07:04 2016 +0300

    secure: disabled site rendering in frames

 sweettooth/settings.py |    3 +++
 1 files changed, 3 insertions(+), 0 deletions(-)
---
diff --git a/sweettooth/settings.py b/sweettooth/settings.py
index 0581711..8be9059 100644
--- a/sweettooth/settings.py
+++ b/sweettooth/settings.py
@@ -66,10 +66,13 @@ MIDDLEWARE_CLASSES = (
     'django.middleware.common.CommonMiddleware',
     'django.contrib.sessions.middleware.SessionMiddleware',
     'django.middleware.csrf.CsrfViewMiddleware',
+    'django.middleware.clickjacking.XFrameOptionsMiddleware',
     'django.contrib.auth.middleware.AuthenticationMiddleware',
     'django.contrib.messages.middleware.MessageMiddleware',
 )
 
+X_FRAME_OPTIONS = 'DENY'
+
 ROOT_URLCONF = 'sweettooth.urls'
 
 TEMPLATES = [


[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]