Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

some CSP fixes #2194

Merged
merged 11 commits into from
Jan 25, 2024
Merged

some CSP fixes #2194

merged 11 commits into from
Jan 25, 2024

Conversation

sleidig
Copy link
Member

@sleidig sleidig commented Jan 23, 2024

see #1999


allow blob images and fix angular blocking CSP reports going to sentry

CSP configuration is a huge pain *** I still somehow couldn't get a new hash for the index.html script. And setting up nginx with nonces also doesn't look trivial ...

Copy link

Deployed to https://pr-2194.aam-digital.net/

@TheSlimvReal
Copy link
Collaborator

The security endpoint seems to work now but as long as we don't have the correct hash, this still will send a bunch of reports to sentry and also mill the console. So is this really something we want to keep enabled?

1 similar comment
@TheSlimvReal
Copy link
Collaborator

The security endpoint seems to work now but as long as we don't have the correct hash, this still will send a bunch of reports to sentry and also mill the console. So is this really something we want to keep enabled?

@TheSlimvReal TheSlimvReal merged commit f0fcdbc into master Jan 25, 2024
7 checks passed
@TheSlimvReal TheSlimvReal deleted the csp-impr branch January 25, 2024 16:19
@aam-digital-ci
Copy link
Collaborator

🎉 This PR is included in version 3.30.0-master.2 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

@aam-digital-ci aam-digital-ci added the released on @master managed by CI (semantic-release) label Jan 25, 2024
@aam-digital-ci
Copy link
Collaborator

🎉 This PR is included in version 3.30.0 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

@aam-digital-ci aam-digital-ci added the released managed by CI (semantic-release) label Jan 25, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
released on @master managed by CI (semantic-release) released managed by CI (semantic-release)
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants