Look at your tomcat or apache config… Our security folks had us turn on header security in tomcat.
--- Web.xml--- <filter> <filter-name>httpHeaderSecurity</filter-name> <filter-class>org.apache.catalina.filters.HttpHeaderSecurityFilter</filter-class> <async-supported>true</async-supported> </filter> <filter-mapping> <filter-name>httpHeaderSecurity</filter-name> <url-pattern>/*</url-pattern> </filter-mapping> -John Ourada From: cas-user@apereo.org [mailto:cas-user@apereo.org] On Behalf Of Fiz Sent: Tuesday, December 19, 2017 10:30 AM To: CAS Community <cas-user@apereo.org> Subject: Re: [cas-user] CAS denied as iFrame Bonjour, Avez vous réussi à résoudre ce problème? Je suis également intéressé. Cordialement, Philippe Le mardi 12 décembre 2017 09:43:54 UTC+1, Sébastien BEAUDLOT a écrit : Hello, Thanks, but no change. Iframe is still denied. Regards. -- Sébastien BEAUDLOT Administrateur réseaux, téléphonie et flotte mobile Direction Opérationnelle des Systèmes d'Information ( DOSI ) Pôle Infrastructures Université d'Avignon et des Pays de Vaucluse Tèl : 04.90.16.26.04 -- ----- Mail original ----- De: "Pascal Rigaux" <pascal...@univ-paris1.fr<javascript:>> À: "cas-user" <cas-...@apereo.org<javascript:>> Envoyé: Mardi 12 Décembre 2017 09:31:34 Objet: Re: [cas-user] CAS denied as iFrame On 12/12/2017 08:33, Sebastien BEAUDLOT wrote: > Header set X-Frame-Options "ALLOW-FROM=https://websitewithiframe.tld" Hi, Bad syntax, replace "=" with " ". cu -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to cas-user+u...@apereo.org<javascript:>. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/a349b297-29fd-7b09-41b9-63f4dfe8375c%40univ-paris1.fr. -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to cas-user+unsubscr...@apereo.org<mailto:cas-user+unsubscr...@apereo.org>. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/5dd98655-3e41-4dc0-b8ff-3c6bbc9ac818%40apereo.org<https://groups.google.com/a/apereo.org/d/msgid/cas-user/5dd98655-3e41-4dc0-b8ff-3c6bbc9ac818%40apereo.org?utm_medium=email&utm_source=footer>. -- - Website: https://apereo.github.io/cas - Gitter Chatroom: https://gitter.im/apereo/cas - List Guidelines: https://goo.gl/1VRrw7 - Contributions: https://goo.gl/mh7qDG --- You received this message because you are subscribed to the Google Groups "CAS Community" group. To unsubscribe from this group and stop receiving emails from it, send an email to cas-user+unsubscr...@apereo.org. To view this discussion on the web visit https://groups.google.com/a/apereo.org/d/msgid/cas-user/B2DFB9ADF9ADF04EA6011F6126BB48EE0196E13127%40XMBPRD01A.dpu.depaul.edu.