ResponseHeadersPolicySecurityHeadersConfig
A configuration for a set of security-related HTTP response headers. CloudFront adds these headers to HTTP responses that it sends for requests that match a cache behavior associated with this response headers policy.
Types
Properties
The policy directives and their values that CloudFront includes as values for the Content-Security-Policy HTTP response header.
Determines whether CloudFront includes the X-Content-Type-Options HTTP response header with its value set to nosniff.
Determines whether CloudFront includes the X-Frame-Options HTTP response header and the header's value.
Determines whether CloudFront includes the Referrer-Policy HTTP response header and the header's value.
Determines whether CloudFront includes the Strict-Transport-Security HTTP response header and the header's value.
Determines whether CloudFront includes the X-XSS-Protection HTTP response header and the header's value.