Commit d27e6eb4 authored by Juha's avatar Juha

Merge branch 'csp-headers' into 'master'

Added csp

See merge request !13
parents ddf2cbb3 1ddaab31
Pipeline #24886462 failed with stage
......@@ -11,9 +11,8 @@ const cors = corsMiddleware({
});
const app = restify.createServer({ name: 'Auth Service' });
app.use(helmet({
referrerPolicy: {
policy: 'same-origin',
},
contentSecurityPolicy: { directives: { defaultSrc: ["'self'"] } },
referrerPolicy: { policy: 'same-origin' },
}));
app.pre(cors.preflight);
app.use(cors.actual);
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment