SAP Knowledge Base Article - Preview

3163632 - How to handle the Security Headers in Cloud Portal Service site on Neo Environment

Symptom

  • How to enable security headers for Cloud Portal sites on Neo to protect against clickjacking, cross-site scripting, XSS, and other security attacks
  • What security headers are supported to Cloud Portal NEO sites


Read more...

Environment

Cloud Portal service on NEO environment

Product

SAP Business Technology Platform, Neo environment all versions

Keywords

clickjacking, cross-site scripting, XSS, HTTP Security Headers, Security Headers, NEO, Portal Site, Site Settings, CSP,  vulnerability, test, Missing Secure HTTP Headers, HttpOnly, secure , KBA , EP-CPP-NEO-SFC , Launchpad Site and SAP Fiori Cloud , EP-CPP-NEO-FS , Freestyle sites , Problem

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.