Kāore he URL kua utaina
0 / 0

Whakapiri URL ki te paetaha hei tīmata

Pēhia S hei huri paetaha  ·  ? mō te āwhina
Tērā pea ka aukatia e tēnei pae te whakauru iframe. Ka puta kau pea te whārangi.

Āwhina & Whakatika Raruraru
He aha ētahi paetukutuku kāore e uta ana
He aha te whārangi e kau ana?

He maha ngā paetukutuku e aukati ana i te whakauru iframe mā ngā pane HTTP. He āhuatanga haumarutanga tēnei hei ārai i te pāwhiri tīhae (clickjacking).

⚠ Me pēhea te mahi aukati

Ka tuku pane ngā paetukutuku e kī ana ki tō pūtirotiro: "Kaua au e whakauru." Ka whakarongo te pūtirotiro → iframe kau.

PanePānga
X-Frame-Options: DENYAukati katoa
X-Frame-Options: SAMEORIGINRohe ōrite anake
CSP: frame-ancestors 'none'Aukati hou
Hototahi
PaeTūnga
Google, Gmail, GitHubAukatia
Facebook, X / TwitterAukatia
WikipediaWāhanga
Ō paetukutuku akeKa mahi ✓
Taputapu ā-roto / papatohuKa mahi ✓
Pae tūmau / tuhingaKa mahi ✓
Whakamahingia ō paetukutuku
✓ E tūtohua ana

Whakatakoto frame-ancestors kia whakaaetia a walkurls.com anake.

Apache (.htaccess)
Header set Content-Security-Policy "frame-ancestors 'self' https://walkurls.com"
Header unset X-Frame-Options
Nginx
add_header Content-Security-Policy "frame-ancestors 'self' https://walkurls.com";
Node.js / Express
app.use((req, res, next) => {
  res.setHeader('Content-Security-Policy',
    "frame-ancestors 'self' https://walkurls.com");
  res.removeHeader('X-Frame-Options');
  next();
});
PHP
header("Content-Security-Policy: frame-ancestors 'self' https://walkurls.com");
header_remove("X-Frame-Options");
Vercel (vercel.json)
{
  "headers": [{
    "source": "/(.*)",
    "headers": [{
      "key": "Content-Security-Policy",
      "value": "frame-ancestors 'self' https://walkurls.com"
    }]
  }]
}
Netlify (_headers)
/*
  Content-Security-Policy: frame-ancestors 'self' https://walkurls.com
Whakamātautau

Tuwhera DevTools F12 → Console. Mēnā kua aukatia:

Refused to display 'https://...' in a frame
because it set 'X-Frame-Options' to 'deny'.

Tirohia ngā pane mā te terminal:

curl -I https://your-site.com | grep -i "frame\|content-security"
Haumarutanga
⚠ Kaua rawa e whakamahi i te frame-ancestors * i te whakaputa

Me tautuhi i ngā wā katoa: https://walkurls.com

Pātuhi poto papapātuhi
Mua / Muri
SpaceHuri takahuri-aunoa
Home EndTuatahi / Whakamutunga
SHuri paetaha
FMata katoa
?Tēnei paanui āwhina