]> source.dussan.org Git - nextcloud-server.git/commit
Add X-Download-Options and X-Permitted-Cross-Domain-Policies
authorLukas Reschke <lukas@owncloud.com>
Mon, 11 Jan 2016 20:20:42 +0000 (21:20 +0100)
committerLukas Reschke <lukas@owncloud.com>
Tue, 12 Jan 2016 09:37:16 +0000 (10:37 +0100)
commit4d0dcd3c53a4c8c9944bc23d41de71593c3bd5d6
tree425251b10adc5a1d8791ce658f10a0058bf16a4d
parent3317dd0a8e2ca265172d53a16f9241f3351aa3b8
Add X-Download-Options and X-Permitted-Cross-Domain-Policies

Two small security hardenings for our IE users and those with Adobe products. Aligns it more with https://github.com/twitter/secureheaders#secureheaders---
.htaccess
core/js/setupchecks.js
core/js/tests/specs/setupchecksSpec.js
lib/private/response.php