Nitin Galave created RANGER-3443:
------------------------------------
Summary: "X-Permitted-Cross-Domain-Policies" header not set by
Ranger UI
Key: RANGER-3443
URL: https://issues.apache.org/jira/browse/RANGER-3443
Project: Ranger
Issue Type: Improvement
Components: Ranger
Reporter: Nitin Galave
Assignee: Nitin Galave
Ranger does not return "X-Permitted-Cross-Domain-Policies" response header.
OWASP best practices suggest explicitly setting this header to "none":
{code:java}
X-Permitted-Cross-Domain-Policies: none{code}
--
This message was sent by Atlassian Jira
(v8.3.4#803005)