nginx设置禁止某个域名内嵌iframe
location / {
if ($http_referer ~ 'demo.cn') {
add_header X-Frame-Options DENY;
add_header Content-Security-Policy DENY;
}
}
location / {
if ($http_referer ~ 'demo.cn') {
add_header X-Frame-Options DENY;
add_header Content-Security-Policy DENY;
}
}