IIS adds the default settings of "X-Frame-Options: SAMEORIGIN", even then I added a new default website level HTTP response header, like "X-Frame-Options: ALLOW".

Hey. I added a new default web site-level HTTP response header as'X-Frame-Options: ALLOW '. IIS adds the default "X-Frame-Options: SAMEORIGIN" and sends both headers in response. And then the browser reports the error as several "X-Frame-Options" headers with conflicting values ​​("SAMEORIGIN, ALLOW-FROM http://srv-ind-svt26dw.vanenburg.com:8080/ ') encountered http: / loading /srv-ind-svt26dw.vanenburg.com/OTCS/livelink.exe?func=brava.bravaviewer&nodeid=18941 '. Returning to “DENY.” Can someone help me on this.

Many thanks

+4
source share
1

ASP.NET MVC 5, SAMERORIGIN , . this.

+1

Source: https://habr.com/ru/post/1535530/


All Articles