aboutsummaryrefslogtreecommitdiffstats
path: root/guides/source
diff options
context:
space:
mode:
authorRafael Mendonça França <rafaelmfranca@gmail.com>2012-08-10 20:08:09 -0700
committerRafael Mendonça França <rafaelmfranca@gmail.com>2012-08-10 20:08:09 -0700
commitfeff27d38a1db9d16b06a261bdbe6d0f4683e976 (patch)
tree8e61b0aa0112b42677f07cb4edb5c1088db42b0b /guides/source
parentac7e1700f1fd08b50011c256bfa2e382517edb4a (diff)
parent684b6482e4f9d966dfa088b53507847492a023c3 (diff)
downloadrails-feff27d38a1db9d16b06a261bdbe6d0f4683e976.tar.gz
rails-feff27d38a1db9d16b06a261bdbe6d0f4683e976.tar.bz2
rails-feff27d38a1db9d16b06a261bdbe6d0f4683e976.zip
Merge pull request #7329 from guilleiguaran/move-default-headers-ad-railtie
Move AD default_headers configurations to railtie
Diffstat (limited to 'guides/source')
-rw-r--r--guides/source/configuring.textile6
1 files changed, 6 insertions, 0 deletions
diff --git a/guides/source/configuring.textile b/guides/source/configuring.textile
index 513e3a2b2b..5ed3ad4a6b 100644
--- a/guides/source/configuring.textile
+++ b/guides/source/configuring.textile
@@ -338,6 +338,12 @@ h4. Configuring Action Dispatch
* +config.action_dispatch.session_store+ sets the name of the store for session data. The default is +:cookie_store+; other valid options include +:active_record_store+, +:mem_cache_store+ or the name of your own custom class.
+* +config.action_dispatch.default_headers+ is a hash with HTTP headers that are set by default in each response. By default, this is defined as:
+
+<ruby>
+config.action_dispatch.default_headers = { 'X-Frame-Options' => 'SAMEORIGIN', 'X-XSS-Protection' => '1; mode=block' }
+</ruby>
+
* +config.action_dispatch.tld_length+ sets the TLD (top-level domain) length for the application. Defaults to +1+.
* +ActionDispatch::Callbacks.before+ takes a block of code to run before the request.