From 29d187e22621ddcda21db50cb98598d0c44f3ae1 Mon Sep 17 00:00:00 2001 From: Hironsan Date: Fri, 22 Nov 2019 08:55:06 +0900 Subject: [PATCH] Add X-Frame-Options header to prevent clickjacking --- nginx/nginx.conf | 2 ++ 1 file changed, 2 insertions(+) diff --git a/nginx/nginx.conf b/nginx/nginx.conf index 361825c5..683564e8 100644 --- a/nginx/nginx.conf +++ b/nginx/nginx.conf @@ -2,6 +2,8 @@ server { listen 80; charset utf-8; + add_header X-Frame-Options DENY; + location / { root /var/www/html; try_files $uri $uri/ /index.html;