diff --git a/kernel/kernel-auth-adapter/src/main/java/io/mosip/kernel/auth/adapter/config/SecurityConfig.java b/kernel/kernel-auth-adapter/src/main/java/io/mosip/kernel/auth/adapter/config/SecurityConfig.java index fbb5308bd79..2552964234a 100644 --- a/kernel/kernel-auth-adapter/src/main/java/io/mosip/kernel/auth/adapter/config/SecurityConfig.java +++ b/kernel/kernel-auth-adapter/src/main/java/io/mosip/kernel/auth/adapter/config/SecurityConfig.java @@ -10,7 +10,6 @@ import org.springframework.boot.web.servlet.FilterRegistrationBean; import org.springframework.context.annotation.Bean; import org.springframework.context.annotation.Configuration; -import org.springframework.context.annotation.Profile; import org.springframework.core.annotation.Order; import org.springframework.security.authentication.AuthenticationManager; import org.springframework.security.authentication.ProviderManager; @@ -93,6 +92,7 @@ protected void configure(HttpSecurity http) throws Exception { http.addFilterBefore(authFilter(), UsernamePasswordAuthenticationFilter.class); http.addFilterBefore(new CorsFilter(), AuthFilter.class); http.headers().cacheControl(); + http.headers().frameOptions().sameOrigin(); } } @@ -105,4 +105,4 @@ public void commence(HttpServletRequest httpServletRequest, HttpServletResponse httpServletResponse.sendError(HttpServletResponse.SC_UNAUTHORIZED, "UNAUTHORIZED"); } -} \ No newline at end of file +}