Tsy misy URL napetraka
0 / 0

Apetaho ny URL ao amin'ny bara eo anila mba hanombohana

Tsindrio S mba hanova ny bara eo anila  ·  ? ho fanampiana
Mety manakana ny fampidirana iframe ity tranokala ity. Mety ho banga ny pejy.

Fanampiana sy Famahana olana
Nahoana ny tranokala sasany no tsy miasa
Nahoana ny pejy no banga?

Tranokala maro no manakana ny fampidirana iframe amin'ny alalan'ny headers HTTP. Endrika fiarovana ity manohitra ny clickjacking.

⚠ Fomba iasan'ny fanakanana

Ny tranokala dia mandefa headers milaza amin'ny navigateur-nao: «Aza ampidirina aho.» Ny navigateur dia mankatò → iframe banga.

HeaderVokany
X-Frame-Options: DENYManakana ny rehetra
X-Frame-Options: SAMEORIGINSehatra mitovy ihany
CSP: frame-ancestors 'none'Fanakanana maoderina
Fifanindrana
TranokalaSata
Google, Gmail, GitHubVoasakana
Facebook, X / TwitterVoasakana
WikipediaAmpahany
Ny tranonkalanao manokanaMandeha ✓
Fitaovana anatiny / tableau de bordMandeha ✓
Tranokala static / antontan-taratasyMandeha ✓
Ataovy miasa ny tranonkalanao
✓ Soso-kevitra

Apetraho ny frame-ancestors mba hanafahana ny walkurls.com ihany.

Apache (.htaccess)
Header set Content-Security-Policy "frame-ancestors 'self' https://walkurls.com"
Header unset X-Frame-Options
Nginx
add_header Content-Security-Policy "frame-ancestors 'self' https://walkurls.com";
Node.js / Express
app.use((req, res, next) => {
  res.setHeader('Content-Security-Policy',
    "frame-ancestors 'self' https://walkurls.com");
  res.removeHeader('X-Frame-Options');
  next();
});
PHP
header("Content-Security-Policy: frame-ancestors 'self' https://walkurls.com");
header_remove("X-Frame-Options");
Vercel (vercel.json)
{
  "headers": [{
    "source": "/(.*)",
    "headers": [{
      "key": "Content-Security-Policy",
      "value": "frame-ancestors 'self' https://walkurls.com"
    }]
  }]
}
Netlify (_headers)
/*
  Content-Security-Policy: frame-ancestors 'self' https://walkurls.com
Fitsapana

Sokafy ny DevTools F12 → Console. Raha voasakana:

Refused to display 'https://...' in a frame
because it set 'X-Frame-Options' to 'deny'.

Jereo ny headers amin'ny terminal:

curl -I https://your-site.com | grep -i "frame\|content-security"
Fiarovana
⚠ Aza mampiasa frame-ancestors * amin'ny sehatry ny famokarana

Tondroy foana: https://walkurls.com

Fanaingintana fafana fohifohy
Teo aloha / Manaraka
SpaceHanova fandehanana automatika
Home EndVoalohany / Farany
SHanova bara eo anila
FEfijery feno
?Ity valin-jotra fanampiana ity