HTTP响应头使用X-Content-Options、X-XSS-Protection、X-Frame-Options

在tomcat下web.xml中添加过滤器:

	
        httpHeaderSecurity
        org.apache.catalina.filters.HttpHeaderSecurityFilter
		
            antiClickJackingOption
            DENY
        
        true
    
	
        httpHeaderSecurity
        /*
        REQUEST
    

你可能感兴趣的:(JAVA,tomcat,X-Content,X-XSS,x-frame-options,HTTP响应头)