]> Slayer Assistant Repositories - slayer.unlishema.org/.git/commitdiff
Fixed CSP for local
authorunlishema <unlishema@jtryba.com>
Sat, 23 Nov 2024 09:42:21 +0000 (04:42 -0500)
committerunlishema <unlishema@jtryba.com>
Sat, 23 Nov 2024 09:42:21 +0000 (04:42 -0500)
dist/.htaccess
src/.htaccess

index 1465ae0999ded344d0123d503f089b5d7e128043..d2b8bf5767be53cce2eef2cb6bb282702a5d4f00 100644 (file)
@@ -23,7 +23,7 @@ ErrorDocument 504 /pages/error.html?code=504
     Header set X-XSS-Protection "1; mode=block"
     Header set Strict-Transport-Security "max-age=31536000; includeSubDomains; preload"
     Header set Referrer-Policy "strict-origin-when-cross-origin"
-    Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; font-src 'self'; frame-ancestors https://unlishema.org https://*.unlishema.org"
+    Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; font-src 'self'; frame-ancestors http://unlishema.local https://unlishema.org https://*.unlishema.org"
     Header set Permissions-Policy "geolocation=(), microphone=(), camera=()"
 </IfModule>
 
index 1465ae0999ded344d0123d503f089b5d7e128043..d2b8bf5767be53cce2eef2cb6bb282702a5d4f00 100644 (file)
@@ -23,7 +23,7 @@ ErrorDocument 504 /pages/error.html?code=504
     Header set X-XSS-Protection "1; mode=block"
     Header set Strict-Transport-Security "max-age=31536000; includeSubDomains; preload"
     Header set Referrer-Policy "strict-origin-when-cross-origin"
-    Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; font-src 'self'; frame-ancestors https://unlishema.org https://*.unlishema.org"
+    Header set Content-Security-Policy "default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'self' 'unsafe-inline'; img-src 'self' data:; font-src 'self'; frame-ancestors http://unlishema.local https://unlishema.org https://*.unlishema.org"
     Header set Permissions-Policy "geolocation=(), microphone=(), camera=()"
 </IfModule>