csp: fix typo, add base-uri none
Signed-off-by: strawberry <strawberry@puppygock.gay>
This commit is contained in:
parent
f11103b43b
commit
b1886583d9
1 changed files with 1 additions and 1 deletions
|
@ -66,7 +66,7 @@ pub(crate) fn build(server: &Arc<Server>) -> io::Result<axum::routing::IntoMakeS
|
||||||
header::CONTENT_SECURITY_POLICY,
|
header::CONTENT_SECURITY_POLICY,
|
||||||
HeaderValue::from_static(
|
HeaderValue::from_static(
|
||||||
"sandbox; default-src 'none'; font-src 'none'; script-src 'none'; plugin-types application/pdf; \
|
"sandbox; default-src 'none'; font-src 'none'; script-src 'none'; plugin-types application/pdf; \
|
||||||
style-src 'unsafe-inline'; object-src 'self'; frame-ancesors 'none';",
|
style-src 'unsafe-inline'; object-src 'self'; frame-ancestors 'none'; base-uri 'none';",
|
||||||
),
|
),
|
||||||
))
|
))
|
||||||
.layer(cors_layer(server))
|
.layer(cors_layer(server))
|
||||||
|
|
Loading…
Add table
Reference in a new issue