Skip to content

Commit 7942fec

Browse files
Avoid CSRF setting adding x-frame-options header (#983)
(cherry picked from commit 45054aa)
1 parent d09d826 commit 7942fec

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

dotnet/src/dotnetcore/GxNetCoreStartup/Startup.cs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -220,7 +220,7 @@ public void ConfigureServices(IServiceCollection services)
220220
services.AddAntiforgery(options =>
221221
{
222222
options.HeaderName = HttpHeader.X_CSRF_TOKEN_HEADER;
223-
options.SuppressXFrameOptionsHeader = false;
223+
options.SuppressXFrameOptionsHeader = true;
224224
});
225225
}
226226
services.AddDirectoryBrowser();

0 commit comments

Comments
 (0)