Customizing SMF > Tips and Tricks

[HOWTO] Allow SMF 2.0.x to run in an iframe

(1/3) > >>

In this simple guide we will show how to allow SMF 2.0.x to run in an iframe.

Open your index.php in the root directory of your forum


--- Code: ---header('X-Frame-Options: SAMEORIGIN');

--- End code ---
Change to

--- Code: ---// header('X-Frame-Options: SAMEORIGIN');

--- End code ---

Wouldn't this then open the door to clickjacking?

Aleksi "Lex" Kilpinen:
There are risks, but there are also valid usecases.

personally, I think that iframes are outdated at this point.... with the various SSI functions from pretty much every site, why would you open yourself to the potential security issues?


--- Quote from: live627 on January 11, 2019, 10:31:57 PM ---Wouldn't this then open the door to clickjacking?

--- End quote ---

It most certainly would. Iframes are an outdated and risky concept at this point.


[0] Message Index

[#] Next page

Go to full version