another CSP fix
This commit is contained in:
parent
501cd1907e
commit
aa1f79168b
@ -56,7 +56,7 @@ app.use('/api-doc', helmet.contentSecurityPolicy({
|
|||||||
}
|
}
|
||||||
}));
|
}));
|
||||||
// special CSP header for the intro-presentation
|
// special CSP header for the intro-presentation
|
||||||
app.use('/static/intro-presentation/$|index.html', helmet.contentSecurityPolicy({
|
app.use(/\/static\/intro-presentation\/(index.html)?/, helmet.contentSecurityPolicy({
|
||||||
...defaultHeaderConfig,
|
...defaultHeaderConfig,
|
||||||
directives: {
|
directives: {
|
||||||
defaultSrc: [`'none'`],
|
defaultSrc: [`'none'`],
|
||||||
|
Reference in New Issue
Block a user