Nitin Galave created RANGER-3443:
------------------------------------

             Summary: "X-Permitted-Cross-Domain-Policies" header not set by 
Ranger UI
                 Key: RANGER-3443
                 URL: https://issues.apache.org/jira/browse/RANGER-3443
             Project: Ranger
          Issue Type: Improvement
          Components: Ranger
            Reporter: Nitin Galave
            Assignee: Nitin Galave


Ranger does not return "X-Permitted-Cross-Domain-Policies" response header. 
OWASP best practices suggest explicitly setting this header to "none":
{code:java}
X-Permitted-Cross-Domain-Policies: none{code}



--
This message was sent by Atlassian Jira
(v8.3.4#803005)

Reply via email to