<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.ietf-websec-x-frame-options" target="https://datatracker.ietf.org/doc/html/draft-ietf-websec-x-frame-options-02">
   <front>
      <title>HTTP Header Field X-Frame-Options</title>
      <author initials="D." surname="Ross" fullname="David Ross">
         </author>
      <author initials="T." surname="Gondrom" fullname="Tobias Gondrom">
         </author>
      <date month="February" day="25" year="2013" />
      <abstract>
	 <t>   To improve the protection of web applications against Clickjacking,
   this specification describes the X-Frame-Options HTTP response header
   field that declares a policy communicated from the server to the
   client browser on whether the browser may display the transmitted
   content in frames that are part of other web pages.  This
   informational document serves to document the existing use and
   specification of this X-Frame-Options HTTP response header field.

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-ietf-websec-x-frame-options-02" />
   
</reference>
