docs: csp tuning

This commit is contained in:
soulgalore 2018-11-19 09:44:03 +01:00
parent 7531399688
commit dc3d7c409e
1 changed files with 7 additions and 1 deletions

View File

@ -3,7 +3,13 @@
x-frame-options: SAMEORIGIN
X-XSS-Protection: 1; mode=block
Referrer-Policy: no-referrer
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'; child-src https://www.youtube.com;
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'
/search/*
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'self' 'unsafe-inline'; style-src 'unsafe-inline';
/video/*
Content-Security-Policy-Report-Only: default-src 'self'; script-src 'unsafe-inline'; style-src 'unsafe-inline'; child-src https://www.youtube.com; img-src https://i.ytimg.com;
/img/*
Cache-Control: public, max-age=360000