Console: Add X-Content-Type-Options header everywhere (ticket #1763)

This commit is contained in:
zzz
2016-02-25 14:56:06 +00:00
parent a79b25d7b1
commit 248deaecbb
22 changed files with 23 additions and 3 deletions

View File

@ -41,6 +41,7 @@ public class CodedIconRendererServlet extends HttpServlet {
//set as many headers as are common to any outcome
srs.setContentType("image/png");
srs.setHeader("X-Content-Type-Options", "nosniff");
srs.setDateHeader("Expires", I2PAppContext.getGlobalContext().clock().now() + 86400000l);
srs.setHeader("Cache-Control", "public, max-age=86400");
OutputStream os = srs.getOutputStream();