Dotclear

Changeset 3326:6735e0420ee9 for admin


Ignore:
Timestamp:
08/27/16 12:34:53 (9 years ago)
Author:
franck <carnet.franck.paul@…>
Branch:
default
Message:

Add a CSP Report only option for admin (see about:config), default → false

File:
1 edited

Legend:

Unmodified
Added
Removed
  • admin/install/index.php

    r3303 r3326  
    172172          # CSP directive (admin part) 
    173173          $blog_settings->system->put('csp_admin_on',true,'boolean','Send CSP header (admin)',true,true); 
     174          $blog_settings->system->put('csp_admin_report_only',false,'boolean','CSP Report only violations (admin)',true,true); 
    174175          $blog_settings->system->put('csp_admin_default',"'self'",'string','CSP default-src directive',true,true); 
    175176          $blog_settings->system->put('csp_admin_script',"'self' 'unsafe-inline' 'unsafe-eval'",'string','CSP script-src directive',true,true); 
Note: See TracChangeset for help on using the changeset viewer.

Sites map