- π§πͺBelgium matthieu_collet
same problem here, this module doesn't work (Drupal 9.5.2)
- π¨π¦Canada efrainh
Hey guys, thanks for reporting this issue, specially
mr_scumbag.
Sorry for the delay, I'm trying to fix it now. - Assigned to efrainh
- Status changed to Fixed
over 1 year ago 6:10pm 26 February 2023 - π¨π¦Canada efrainh
I could not reproduce this issue on Drupal 9.5.3 with PHP 8.0, but when I upgraded PHP to version 8.1.14, I started seeing the header X-Frame-Options: SAMEORIGIN, using no matter what Directive in the configuration.
I lowered the priority, so it runs after, and included it in a new release https://www.drupal.org/project/x_frame_options/releases/8.x-1.3 β . - π²π½Mexico girphpdeveloper
hello @efrainh I have installed the new version, but I am still not able to disable X-Frame-Options :(
server: ESF
set-cookie: __Secure-3PSIDCC=AFvIBn_KxB2n4ua0OVCGGYumhOg9MZphs0mYTWwtT2RJD8DZlvsrJVL17zgKAoEpKq01-N7YWu-T; expires=Tue, 27-Feb-2024 22:42:11 GMT; path=/; domain=.youtube.com; Secure; HttpOnly; priority=high; SameSite=none
strict-transport-security: max-age=31536000
vary: Sec-CH-UA-Arch, Sec-CH-UA-Bitness, Sec-CH-UA-Full-Version, Sec-CH-UA-Full-Version-List, Sec-CH-UA-Model, Sec-CH-UA-WoW64, Sec-CH-UA-Platform, Sec-CH-UA-Platform-Version
x-content-type-options: nosniff
x-frame-options: SAMEORIGIN
x-xss-protection: - π¨π¦Canada efrainh
Hi @ girdevmx, does that happen with any of the options in the configuration?
Please provide your Drupal core and PHP version, so I can try to reproduce the issue. Automatically closed - issue fixed for 2 weeks with no activity.
- π§πͺBelgium kwinten-hardies Vlaams-Brabant
I am using version 8.x-1.3 with php version 8.1.10 and Drupal core 9.5.8. The x-Frame-Options is always set as SAMEORIGIN. No matter what setting I use in the module.