Merge pull request #26 in ~VLE2FE/definma-api from develop to master
* commit 'aa1f79168b37e2656a0ae9da0ccd2be8a53454df': another CSP fix
This commit is contained in:
commit
d4c6dc82b7
@ -56,7 +56,7 @@ app.use('/api-doc', helmet.contentSecurityPolicy({
|
||||
}
|
||||
}));
|
||||
// special CSP header for the intro-presentation
|
||||
app.use('/static/intro-presentation/$|index.html', helmet.contentSecurityPolicy({
|
||||
app.use(/\/static\/intro-presentation\/(index.html)?/, helmet.contentSecurityPolicy({
|
||||
...defaultHeaderConfig,
|
||||
directives: {
|
||||
defaultSrc: [`'none'`],
|
||||
|
Reference in New Issue
Block a user