Verified Commit a108a273 authored by Julien Veyssier's avatar Julien Veyssier
Browse files

refs #365 fix public pages


Signed-off-by: Julien Veyssier's avatarJulien Veyssier <eneiluj@posteo.net>
parent 449b3587
Pipeline #198230676 passed with stages
in 4 minutes and 11 seconds
......@@ -15,3 +15,6 @@
.ui-button-icon-only .fa {
padding-left: 1px;
}
#body-public #content {
min-height: 100% !important;
}
\ No newline at end of file
......@@ -2463,6 +2463,8 @@ class PageController extends Controller {
$csp = new ContentSecurityPolicy();
$csp->addAllowedImageDomain('*')
->addAllowedMediaDomain('*')
->allowEvalScript(true)
->addAllowedScriptDomain('*')
->addAllowedConnectDomain('*');
$response->setContentSecurityPolicy($csp);
return $response;
......@@ -2667,11 +2669,12 @@ class PageController extends Controller {
$csp = new ContentSecurityPolicy();
$csp->addAllowedImageDomain('*')
->addAllowedMediaDomain('*')
//->addAllowedChildSrcDomain('*')
->addAllowedChildSrcDomain('*')
->addAllowedFrameDomain('*')
->addAllowedWorkerSrcDomain('*')
->addAllowedObjectDomain('*')
->addAllowedScriptDomain('*')
->allowEvalScript(true)
->addAllowedConnectDomain('*');
$csp->addAllowedFrameAncestorDomain('*');
$response->setContentSecurityPolicy($csp);
......
Markdown is supported
0% or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment