Skip to content

Commit 13ca7ac

Browse files
Referrer-Policy is added by default in Reactive applications
Closes gh-13561
1 parent c4f061c commit 13ca7ac

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

docs/modules/ROOT/pages/reactive/exploits/headers.adoc

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -410,8 +410,8 @@ fun webFilterChain(http: ServerHttpSecurity): SecurityWebFilterChain {
410410
[[webflux-headers-referrer]]
411411
== Referrer Policy
412412

413-
Spring Security does not add xref:features/exploits/headers.adoc#headers-referrer[Referrer Policy] headers by default.
414-
You can enable the Referrer Policy header using configuration as shown below:
413+
Spring Security adds the xref:features/exploits/headers.adoc#headers-referrer[Referrer Policy] header by default with the directive `no-referrer`.
414+
You can change the Referrer Policy header using configuration as shown below:
415415

416416
.Referrer Policy Configuration
417417
[tabs]

0 commit comments

Comments
 (0)