M Michal S New Member May 11, 2016 1 0 1 42 May 11, 2016 #1 1. PVEproxy server does not use HSTS-Headers. 2. PVEproxy server is vulnerable to „clickjacking“, because it does not make use of the X-Frame-Options HTTP header. Is there an option to set this http header?
1. PVEproxy server does not use HSTS-Headers. 2. PVEproxy server is vulnerable to „clickjacking“, because it does not make use of the X-Frame-Options HTTP header. Is there an option to set this http header?