The server does not use HSTS-Headers and is vulnerable to „clickjacking“

Michal S

New Member
May 11, 2016
1
0
1
42
1. PVEproxy server does not use HSTS-Headers.
2. PVEproxy server is vulnerable to „clickjacking“, because it does not make use of the X-Frame-Options HTTP header.

Is there an option to set this http header?