[ https://issues.apache.org/jira/browse/LIVY-785?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17881490#comment-17881490 ]
Gyorgy Gal commented on LIVY-785: --------------------------------- PR is uploaded at https://github.com/apache/incubator-livy/pull/456 > Enable adding security related HTTP headers > ------------------------------------------- > > Key: LIVY-785 > URL: https://issues.apache.org/jira/browse/LIVY-785 > Project: Livy > Issue Type: Task > Affects Versions: 0.8.0 > Reporter: Andras Beni > Assignee: Nilesh Rathi > Priority: Major > Fix For: 0.9.0 > > Time Spent: 40m > Remaining Estimate: 0h > > The following HTTP headers help eliminate the risk of various client side > vulnerabilities: > * X-XSS-Protection > * X-Frame_options > * X-Content-Type-Options > Thus we need to allow users to easily add them to HTTP responses of Livy > server. -- This message was sent by Atlassian Jira (v8.20.10#820010)