Thread:Project:Support desk/Display in iframes on external sites broken after upgrade

Hi there,

on our wiki we have many pages created for display in iframes on external sites. It's an established feature we and others really rely on.

After an upgrade from 1.19.0 to 1.20.3 the pages are not displayed in iframes on external sites anymore but are still displayed on our own domain inside iframes.

Firebug says: "Load denied by X-Frame-Options: http://www.example.com/w/index.php/Pagename does not permit cross-origin framing."

So obviously a SAMEORIGIN at work somewhere!?

To be on the 'safe side' we set the following which did not make any difference:

$wgBreakFrames = false;

$wgEditPageFrameOptions = false;

$wgApiFrameOptions = false;

Suspects could be the security updates 1.19.x/1.20.x

Any ideas?

Would be perfect to have something like $wgAllowFramingFromDomain = array

Tyvm

Eric