Class SecureHeadersProperties
java.lang.Object
org.springframework.cloud.gateway.filter.factory.SecureHeadersProperties
@ConfigurationProperties("spring.cloud.gateway.filter.secure-headers")
public class SecureHeadersProperties
extends Object
- Author:
- Spencer Gibb, Thirunavukkarasu Ravichandran
-
Field Summary
FieldsModifier and TypeFieldDescriptionstatic final StringContent-Security Policy header default.static final StringReferrer Policy header default.static final StringStrict transport security header default.static final StringContent-Type Options header default.static final StringDownload Options header default.static final StringFrame Options header default.static final StringPermitted Cross-Domain Policies header default.static final StringXss-Protection header default. -
Constructor Summary
Constructors -
Method Summary
Modifier and TypeMethodDescriptionvoidsetContentSecurityPolicy(String contentSecurityPolicy) voidsetContentTypeOptions(String contentTypeOptions) voidsetDisable(List<String> disable) voidsetDownloadOptions(String downloadOptions) voidsetFrameOptions(String frameOptions) voidsetPermittedCrossDomainPolicies(String permittedCrossDomainPolicies) voidsetReferrerPolicy(String referrerPolicy) voidsetStrictTransportSecurity(String strictTransportSecurity) voidsetXssProtectionHeader(String xssProtectionHeader) toString()
-
Field Details
-
X_XSS_PROTECTION_HEADER_DEFAULT
Xss-Protection header default.- See Also:
-
STRICT_TRANSPORT_SECURITY_HEADER_DEFAULT
Strict transport security header default.- See Also:
-
X_FRAME_OPTIONS_HEADER_DEFAULT
Frame Options header default.- See Also:
-
X_CONTENT_TYPE_OPTIONS_HEADER_DEFAULT
Content-Type Options header default.- See Also:
-
REFERRER_POLICY_HEADER_DEFAULT
Referrer Policy header default.- See Also:
-
CONTENT_SECURITY_POLICY_HEADER_DEFAULT
Content-Security Policy header default.- See Also:
-
X_DOWNLOAD_OPTIONS_HEADER_DEFAULT
Download Options header default.- See Also:
-
X_PERMITTED_CROSS_DOMAIN_POLICIES_HEADER_DEFAULT
Permitted Cross-Domain Policies header default.- See Also:
-
-
Constructor Details
-
SecureHeadersProperties
public SecureHeadersProperties()
-
-
Method Details
-
getXssProtectionHeader
-
setXssProtectionHeader
-
getStrictTransportSecurity
-
setStrictTransportSecurity
-
getFrameOptions
-
setFrameOptions
-
getContentTypeOptions
-
setContentTypeOptions
-
getReferrerPolicy
-
setReferrerPolicy
-
getContentSecurityPolicy
-
setContentSecurityPolicy
-
getDownloadOptions
-
setDownloadOptions
-
getPermittedCrossDomainPolicies
-
setPermittedCrossDomainPolicies
-
getDisable
-
setDisable
-
toString
-