Response Headers Policy Security Headers Config Args
Constructors
Properties
The policy directives and their values that CloudFront includes as values for the Content-Security-Policy
HTTP response header. See Content Security Policy for more information.
Determines whether CloudFront includes the X-Content-Type-Options
HTTP response header with its value set to nosniff
. See Content Type Options for more information.
Determines whether CloudFront includes the X-Frame-Options
HTTP response header and the header’s value. See Frame Options for more information.
Determines whether CloudFront includes the Referrer-Policy
HTTP response header and the header’s value. See Referrer Policy for more information.
Determines whether CloudFront includes the Strict-Transport-Security
HTTP response header and the header’s value. See Strict Transport Security for more information.
Determine whether CloudFront includes the X-XSS-Protection
HTTP response header and the header’s value. See XSS Protection for more information.