Palibe URL yatsitsidwa
0 / 0

Matani URL ku sidebar kuti muyambe

Dinani S kuti musinthensinthe sidebar  ·  ? kuti mupeze thandizo
Tsamba ili likhoza kuletsa kuikidwa mu iframe. Tsambali likhoza kuoneka lopanda kanthu.

Thandizo ndi Kuthetsa Mavuto
Chifukwa chiyani masamba ena samatuluka
N'chifukwa chiyani tsamba lili lopanda kanthu?

Masamba ambiri amaletsa kuikidwa mu iframe kudzera mu HTTP headers. Izi ndi chitetezo choteteza kuchokera ku clickjacking.

⚠ Mmene kuletsa kumachitira

Masamba amatumiza headers zouza msakatsi wanu kuti: "Musandiike m'nkati." Msakatsi umamvera → iframe yopanda kanthu.

HeaderZotsatira
X-Frame-Options: DENYKuletsa zonse
X-Frame-Options: SAMEORIGINDomain yomweyo yokha
CSP: frame-ancestors 'none'Kuletsa kwamakono
Kugwirizana
TsambaMkhalidwe
Google, Gmail, GitHubZaletsa
Facebook, X / TwitterZaletsa
WikipediaPang'ono
Masamba anu anuZikugwira ntchito ✓
Zida zamkati / ma dashboardZikugwira ntchito ✓
Masamba osasunthika / zolembaZikugwira ntchito ✓
Pangani kuti masamba anu agwire ntchito
✓ Zolimbikitsidwa

Ikani frame-ancestors kuti mulole walkurls.com yokha.

Apache (.htaccess)
Header set Content-Security-Policy "frame-ancestors 'self' https://walkurls.com"
Header unset X-Frame-Options
Nginx
add_header Content-Security-Policy "frame-ancestors 'self' https://walkurls.com";
Node.js / Express
app.use((req, res, next) => {
  res.setHeader('Content-Security-Policy',
    "frame-ancestors 'self' https://walkurls.com");
  res.removeHeader('X-Frame-Options');
  next();
});
PHP
header("Content-Security-Policy: frame-ancestors 'self' https://walkurls.com");
header_remove("X-Frame-Options");
Vercel (vercel.json)
{
  "headers": [{
    "source": "/(.*)",
    "headers": [{
      "key": "Content-Security-Policy",
      "value": "frame-ancestors 'self' https://walkurls.com"
    }]
  }]
}
Netlify (_headers)
/*
  Content-Security-Policy: frame-ancestors 'self' https://walkurls.com
Kuyesa

Tsegulani DevTools F12 → Console. Ngati zaletsa:

Refused to display 'https://...' in a frame
because it set 'X-Frame-Options' to 'deny'.

Onani headers kudzera mu terminal:

curl -I https://your-site.com | grep -i "frame\|content-security"
Chitetezo
⚠ Musagwiritse ntchito frame-ancestors * pa malo otsitsidwa

Nthawi zonse tchulani: https://walkurls.com

Njira zaufupi za keyboard
Yapitayo / Yotsatira
SpaceSinthani kusewera kwayekha
Home EndYoyamba / Yomaliza
SSinthani sidebar
FSkrini yonse
?Panel iyi yothandiza