<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-websec-x-frame-options" target="https://datatracker.ietf.org/doc/html/draft-ietf-websec-x-frame-options-00">
   <front>
      <title>HTTP Header X-Frame-Options</title>
      <author initials="D." surname="Ross" fullname="David Ross">
         </author>
      <author initials="T." surname="Gondrom" fullname="Tobias Gondrom">
         </author>
      <date month="July" day="3" year="2012" />
      <abstract>
	 <t>   To improve the protection of web applications against Clickjacking
   this standards defines a http response header that declares a policy
   communicated from a host to the client browser whether the
   transmitted content MUST NOT be displayed in frames of other pages
   from different origins which are allowed to frame the content.  This
   drafts serves to document the existing use and specification of
   X-Frame-Options.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-websec-x-frame-options-00" />
   
</reference>
