HTTP Security Headers
Just learning about this. There is a lot of info online and difficult to sift through in order to find a decent example in which to mirror for my own site.
Can anyone provide a real example using a phony URL that I can reference?
The code is to go into the .htaccess file, and will hit upon the following areas:
- HTTP Strict Transport Security
- Content Security Policy
- Access-Control-Allow-Origin
- X-FrameOptions
- X-XSS-Protection
- X-Content-Type-Options
Thank you! Some sites automatically create this info for you and include in the site when you publish.
