case class SecurityHeadersConfig(frameOptions: Option[String] = Some("DENY"), xssProtection: Option[String] = Some("1; mode=block"), contentTypeOptions: Option[String] = Some("nosniff"), permittedCrossDomainPolicies: Option[String] = Some("master-only"), contentSecurityPolicy: Option[String] = Some("default-src 'self'"), referrerPolicy: Option[String] = ..., allowActionSpecificHeaders: Boolean = false) extends Product with Serializable
A type safe configuration object for setting security headers.
- frameOptions
"X-Frame-Options":
- xssProtection
"X-XSS-Protection":
- contentTypeOptions
"X-Content-Type-Options"
- permittedCrossDomainPolicies
"X-Permitted-Cross-Domain-Policies".
- contentSecurityPolicy
"Content-Security-Policy"
- referrerPolicy
"Referrer-Policy"
Linear Supertypes
Ordering
- Alphabetic
- By Inheritance
Inherited
- SecurityHeadersConfig
- Serializable
- Serializable
- Product
- Equals
- AnyRef
- Any
- Hide All
- Show All
Visibility
- Public
- All
Instance Constructors
- new SecurityHeadersConfig()
-
new
SecurityHeadersConfig(frameOptions: Option[String] = Some("DENY"), xssProtection: Option[String] = Some("1; mode=block"), contentTypeOptions: Option[String] = Some("nosniff"), permittedCrossDomainPolicies: Option[String] = Some("master-only"), contentSecurityPolicy: Option[String] = Some("default-src 'self'"), referrerPolicy: Option[String] = ..., allowActionSpecificHeaders: Boolean = false)
- frameOptions
"X-Frame-Options":
- xssProtection
"X-XSS-Protection":
- contentTypeOptions
"X-Content-Type-Options"
- permittedCrossDomainPolicies
"X-Permitted-Cross-Domain-Policies".
- contentSecurityPolicy
"Content-Security-Policy"
- referrerPolicy
"Referrer-Policy"
Value Members
- val allowActionSpecificHeaders: Boolean
- val contentSecurityPolicy: Option[String]
- val contentTypeOptions: Option[String]
- val frameOptions: Option[String]
- val permittedCrossDomainPolicies: Option[String]
- val referrerPolicy: Option[String]
- def withContentSecurityPolicy(contentSecurityPolicy: Optional[String]): SecurityHeadersConfig
- def withContentTypeOptions(contentTypeOptions: Optional[String]): SecurityHeadersConfig
- def withFrameOptions(frameOptions: Optional[String]): SecurityHeadersConfig
- def withPermittedCrossDomainPolicies(permittedCrossDomainPolicies: Optional[String]): SecurityHeadersConfig
- def withReferrerPolicy(referrerPolicy: Optional[String]): SecurityHeadersConfig
- def withXssProtection(xssProtection: Optional[String]): SecurityHeadersConfig
- val xssProtection: Option[String]