ResponseHeadersPolicySecurityHeadersConfig
A configuration for a set of security-related HTTP response headers. CloudFront adds these headers to HTTP responses that it sends for requests that match a cache behavior associated with this response headers policy.
Types
Properties
The policy directives and their values that CloudFront includes as values for the Content-Security-Policy
HTTP response header.
Determines whether CloudFront includes the X-Content-Type-Options
HTTP response header with its value set to nosniff
.
Determines whether CloudFront includes the X-Frame-Options
HTTP response header and the header's value.
Determines whether CloudFront includes the Referrer-Policy
HTTP response header and the header's value.
Determines whether CloudFront includes the Strict-Transport-Security
HTTP response header and the header's value.
Determines whether CloudFront includes the X-XSS-Protection
HTTP response header and the header's value.