Skip to content

Commit 45054aa

Browse files
Avoid CSRF setting adding x-frame-options header (#983)
1 parent 4cfa7bc commit 45054aa

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

dotnet/src/dotnetcore/GxNetCoreStartup/Startup.cs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -221,7 +221,7 @@ public void ConfigureServices(IServiceCollection services)
221221
services.AddAntiforgery(options =>
222222
{
223223
options.HeaderName = HttpHeader.X_CSRF_TOKEN_HEADER;
224-
options.SuppressXFrameOptionsHeader = false;
224+
options.SuppressXFrameOptionsHeader = true;
225225
});
226226
}
227227
services.AddDirectoryBrowser();

0 commit comments

Comments
 (0)