From 25f9c932f855db9eab702f7d18ad5b3fa002d1fc Mon Sep 17 00:00:00 2001 From: Jonas Tobias Hopusch Date: Sat, 25 Mar 2023 14:24:19 +0100 Subject: [PATCH] Disable inline asset exception in CORS --- www.jotoho.de/Caddyfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/www.jotoho.de/Caddyfile b/www.jotoho.de/Caddyfile index a254b5d..9013528 100644 --- a/www.jotoho.de/Caddyfile +++ b/www.jotoho.de/Caddyfile @@ -1,6 +1,6 @@ http://www.jotoho.de -header Content-Security-Policy "default-src 'self' https://jotoho.de https://*.jotoho.de 'unsafe-inline' 'strict-dynamic'; base-uri https://jotoho.de https://*.jotoho.de; object-src 'none'; frame-ancestors 'none'; upgrade-insecure-requests;" +header Content-Security-Policy "default-src 'self' https://jotoho.de https://*.jotoho.de; base-uri https://jotoho.de https://*.jotoho.de; object-src 'none'; frame-ancestors 'none'; upgrade-insecure-requests;" file_server { root /site/