From 55a782d910b44d8bca0f8bdfe6740e4918767b50 Mon Sep 17 00:00:00 2001 From: Jonas Tobias Hopusch Date: Thu, 2 Mar 2023 16:30:00 +0100 Subject: [PATCH] Grant CORS default permissions for https://www.jotoho.de to full domain All internal access, access from jotoho.de and all its subdomains has been permitted. --- www.jotoho.de/Caddyfile | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/www.jotoho.de/Caddyfile b/www.jotoho.de/Caddyfile index fd39b76..a7dc980 100644 --- a/www.jotoho.de/Caddyfile +++ b/www.jotoho.de/Caddyfile @@ -1,6 +1,6 @@ http://www.jotoho.de -header Content-Security-Policy "default-src 'none'; base-uri 'self' https://jotoho.de https://*.jotoho.de; child-src 'none'; connect-src 'none'; font-src 'none'; frame-ancestors 'none'; img-src 'self' https://jotoho.de https://*.jotoho.de; media-src 'self' https://jotoho.de https://*.jotoho.de; object-src 'none'; style-src 'self'; worker-src 'none'; upgrade-insecure-requests; form-action 'none';" +header Content-Security-Policy "default-src 'self' https://jotoho.de https://*.jotoho.de; base-uri 'self' https://jotoho.de https://*.jotoho.de; upgrade-insecure-requests;" file_server { root /site/