Forum Discussion
Avoiding cross-domain security restrictions
I have a customer who would like to embed an iframe from a Tableau server on a webpage, without getting cross-domain security restrictions.
Currently the tableau server resides behind "tableau.prod.mysite.com." The customer would like traffic that goes to "prod.mysite.com/tableau" to route to "tableau.prod.mysite.com" which the customer thinks will fix the problem.
Any suggestions? Thanks!
1 Reply
- VernonWells
Employee
I will say firstly that, of course, cross-site protections do exist for a very good reason, so the customer should be quite careful about this.
Having said that, the Host header and Request Target can be transparently rewritten as it traverses the BIG-IP. The following recipe explains what this is, how it is done, and provides an example:
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com