mirror of
https://github.com/ajurna/cbwebreader.git
synced 2025-12-06 14:17:19 +00:00
adding csp
This commit is contained in:
@@ -50,6 +50,7 @@ MIDDLEWARE = [
|
||||
"django.contrib.auth.middleware.AuthenticationMiddleware",
|
||||
"django.contrib.messages.middleware.MessageMiddleware",
|
||||
"django.middleware.clickjacking.XFrameOptionsMiddleware",
|
||||
'csp.middleware.CSPMiddleware',
|
||||
]
|
||||
|
||||
ROOT_URLCONF = "cbreader.urls"
|
||||
@@ -144,4 +145,7 @@ BOOTSTRAP4 = {
|
||||
"integrity": "sha384-Piv4xVNRyMGpqkS2by6br4gNJ7DXjqk09RmUpJ8jgGtD7zP9yug3goQfGII0yAns",
|
||||
"crossorigin": "anonymous",
|
||||
},
|
||||
}
|
||||
}
|
||||
CSP_DEFAULT_SRC = ("'self'", "'unsafe-inline'", 'cdn.jsdelivr.net', 'cdn.datatables.net', 'i.creativecommons.org',
|
||||
'code.jquery.com', 'licensebuttons.net', 'www.w3.org')
|
||||
CSP_IMG_SRC = ("'self'", 'i.creativecommons.org', 'licensebuttons.net')
|
||||
Reference in New Issue
Block a user