Clickjacking protection in IIS7

Configure IIS to prevent Clickjacking

Follow the steps to do this

  • Open Internet Information Services (IIS) Manager.
  • In the Connections pane on the left side, expand the Sites folder and select the site that you want to protect.
  • Double-click the HTTP Response Headers icon in the feature list in the middle.
  • In the Actions pane on the right side, click Add.
  • In the dialog box that appears, type X-Frame-Options in the Name field and type SAMEORIGIN in the Value field.
  • Click OK to save your changes.
References

http://support.microsoft.com/kb/2694329

2 replies

Leave a Reply

Want to join the discussion?
Feel free to contribute!

Leave a Reply to Israel Cancel reply

Your email address will not be published. Required fields are marked *