Nitin Galave created RANGER-3443: ------------------------------------ Summary: "X-Permitted-Cross-Domain-Policies" header not set by Ranger UI Key: RANGER-3443 URL: https://issues.apache.org/jira/browse/RANGER-3443 Project: Ranger Issue Type: Improvement Components: Ranger Reporter: Nitin Galave Assignee: Nitin Galave
Ranger does not return "X-Permitted-Cross-Domain-Policies" response header. OWASP best practices suggest explicitly setting this header to "none": {code:java} X-Permitted-Cross-Domain-Policies: none{code} -- This message was sent by Atlassian Jira (v8.3.4#803005)