Setting up Content Security Policy in JIRA

We are using JIRA 6.4.8 on Linux 2.6.32-696.1.1.el6.x86_64
Application Server Container: Apache Tomcat/7.0.55.

Is it possible to implement 'Content Security Policy' and Enable X-FRAME-Options header to implement clickjacking protection?

1 answer

0 votes

Hi Rilwan,

I saw this question asked a couple months ago in a post titled X-Frame-Options or Content-Security-Policy.  The author found the solution on a webpage titled X-Frame-Options – How to Combat Clickjacking.

The page I'm referencing provides good information on X-Frame-Options Directives, Enabling X-Frame-Options Header, and information regarding caveats with X-Frame-Options Browser Support.

Cheers,

Branden

Suggest an answer

Log in or Sign up to answer
Community showcase
Published Mar 05, 2018 in Jira Software

Jack Graves: Real Ale enthusiast with a knack for Jira Software implementation

@Jack Graves [AC] first caught our eye with his incredible breakdown of what, in his opinion, can make or break a Jira software implementation. (Read his thoughts on this thread)! In this follow...

96,830 views 4 14
Read article

Atlassian User Groups

Connect with like-minded Atlassian users at free events near you!

Find a group

Connect with like-minded Atlassian users at free events near you!

Find my local user group

Unfortunately there are no AUG chapters near you at the moment.

Start an AUG

You're one step closer to meeting fellow Atlassian users at your local meet up. Learn more about AUGs

Groups near you