Allow SSO iFrames od chaptergy
Drops and changes HTTP response headers to allow sso login pages to be iframed.
11 uživatelů11 uživatelů
Metadata rozšíření
O tomto rozšíření
This plugin changes HTTP headers to allow websites to be iframed which block this. It is meant for development and testing purposes.
It does the following:
Note, that when cookies within this iframe are required, the iframe content has to be HTTPS, otherwise cookies will not be set.
It does the following:
- Drop all 'x-frame-options' response headers
- Drop all 'content-security-policy' response headers
- Change all 'set-cookie' response headers to set 'SameSite=None' (this also requires the Secure flag to be set for the cookie)
- Change 'sec-fetch-dest' request headers to 'document' if it equals 'iframe'
Note, that when cookies within this iframe are required, the iframe content has to be HTTPS, otherwise cookies will not be set.
Ohodnoceno 4 1 redaktorem
Oprávnění a data
Další informace
- Odkazy doplňku
- Verze
- 1.1
- Velikost
- 23,29 KB
- Poslední aktualizace
- před 4 lety (14. led 2022)
- Příbuzné kategorie
- Historie změn
- Přidat do sbírky