Sha256: 8fe3f02551451f33a47413aa953b0110ce23361a1d2379388cb441ffdf4b9620

Contents?: true

Size: 849 Bytes

Versions: 22

Compression:

Stored size: 849 Bytes

Contents

module SecureHeaders
  class XFOBuildError < StandardError; end
  class XFrameOptions < Header
    module Constants
      XFO_HEADER_NAME = "X-Frame-Options"
      DEFAULT_VALUE = 'SAMEORIGIN'
      VALID_XFO_HEADER = /\A(SAMEORIGIN\z|DENY\z|ALLOW-FROM[:\s])/i
    end
    include Constants

    def initialize(config = nil)
      @config = config
      validate_config unless @config.nil?
    end

    def name
      XFO_HEADER_NAME
    end

    def value
      case @config
      when NilClass
        DEFAULT_VALUE
      when String
        @config
      else
        @config[:value]
      end
    end

    private

    def validate_config
      value = @config.is_a?(Hash) ? @config[:value] : @config
      unless value =~ VALID_XFO_HEADER
        raise XFOBuildError.new("Value must be SAMEORIGIN|DENY|ALLOW-FROM:")
      end
    end
  end
end

Version data entries

22 entries across 22 versions & 1 rubygems

Version Path
secure_headers-2.2.4 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.2.3 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.2.2 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.2.1 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.2.0 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.1.0 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.0.2 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.0.1 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.0.0 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.4.1 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.4.0 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.0.0.pre2 lib/secure_headers/headers/x_frame_options.rb
secure_headers-2.0.0.pre lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.3.4 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.3.3 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.3.2 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.3.1 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.3.0 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.2.0 lib/secure_headers/headers/x_frame_options.rb
secure_headers-1.1.1 lib/secure_headers/headers/x_frame_options.rb