Awukho u-URL olayishiwe
0 / 0

Namathisela ama-URL kubha eseceleni ukuze uqale

Cindezela u-S ukuvula/ukuvala ibha eseceleni  ·  ? ukuthola usizo
Le webhusayithi ingase ivimbe ukufakwa kwe-iframe. Ikhasi lingase libonakale lingenalutho.

Usizo Nokulungisa Izinkinga
Kungani amanye amawebhusayithi engalayishi
Kungani ikhasi lingenalutho?

Amawebhusayithi amaningi avimba ukufakwa kwe-iframe ngama-header e-HTTP. Lesi isici sokuphepha esivikela ekuqhwakeleleni amaklikhi.

⚠ Ukuvimba kusebenza kanjani

Amawebhusayithi athumela ama-header atshela isiphequluli sakho: "Ungangifaki." Isiphequluli siyalalela → i-iframe engenalutho.

I-HeaderUmphumela
X-Frame-Options: DENYKuvimba konke
X-Frame-Options: SAMEORIGINIdomeyini efanayo kuphela
CSP: frame-ancestors 'none'Ukuvimba kwesimanje
Ukuhambelana
IsayithiIsimo
Google, Gmail, GitHubKuvinjiwe
Facebook, X / TwitterKuvinjiwe
WikipediaIngxenye
Amawebhusayithi akhoKuyasebenza ✓
Amathuluzi angaphakathi / amadeshibhodiKuyasebenza ✓
Amasayithi amile / amadokhumentiKuyasebenza ✓
Yenza amasayithi akho asebenze
✓ Okunconyiwe

Setha i-frame-ancestors ukuvumela kuphela i-walkurls.com.

Apache (.htaccess)
Header set Content-Security-Policy "frame-ancestors 'self' https://walkurls.com"
Header unset X-Frame-Options
Nginx
add_header Content-Security-Policy "frame-ancestors 'self' https://walkurls.com";
Node.js / Express
app.use((req, res, next) => {
  res.setHeader('Content-Security-Policy',
    "frame-ancestors 'self' https://walkurls.com");
  res.removeHeader('X-Frame-Options');
  next();
});
PHP
header("Content-Security-Policy: frame-ancestors 'self' https://walkurls.com");
header_remove("X-Frame-Options");
Vercel (vercel.json)
{
  "headers": [{
    "source": "/(.*)",
    "headers": [{
      "key": "Content-Security-Policy",
      "value": "frame-ancestors 'self' https://walkurls.com"
    }]
  }]
}
Netlify (_headers)
/*
  Content-Security-Policy: frame-ancestors 'self' https://walkurls.com
Ukuhlola

Vula i-DevTools F12 → Console. Uma kuvinjiwe:

Refused to display 'https://...' in a frame
because it set 'X-Frame-Options' to 'deny'.

Hlola ama-header nge-terminal:

curl -I https://your-site.com | grep -i "frame\|content-security"
Ukuphepha
⚠ Ungasebenzisi frame-ancestors * kwiprodakshini

Hlala ucacisa: https://walkurls.com

Izinqamuleli zekhibhodi
Okwedlule / Okulandelayo
SpaceVula/vala ukudlala okuzenzakalelayo
Home EndOkokuqala / Okokugcina
SVula/vala ibha eseceleni
FIsikrini esigcwele
?Leli phaneli losizo