diff --git a/core/nginx/conf/nginx.conf b/core/nginx/conf/nginx.conf index 8a8b25f9..a3e32905 100644 --- a/core/nginx/conf/nginx.conf +++ b/core/nginx/conf/nginx.conf @@ -62,7 +62,7 @@ http { {% endif %} {% endif %} - add_header X-Frame-Options 'DENY'; + add_header X-Frame-Options 'SAMEORIGIN'; add_header X-Content-Type-Options 'nosniff'; add_header X-Permitted-Cross-Domain-Policies 'none'; add_header X-XSS-Protection '1; mode=block';