Skip to content

Commit

Permalink
add CSP headers to govtool frontend service
Browse files Browse the repository at this point in the history
  • Loading branch information
adgud committed Feb 12, 2024
1 parent 3ce9ea8 commit f1bf28a
Showing 1 changed file with 2 additions and 0 deletions.
2 changes: 2 additions & 0 deletions scripts/govtool/docker-compose.sanchonet.yml
Original file line number Diff line number Diff line change
Expand Up @@ -207,6 +207,8 @@ services:
- "traefik.http.routers.vva-fe.rule=Host(`${DOMAIN:-$ENVIRONMENT-$CARDANO_NETWORK.govtool.byron.network}`)"
- "traefik.http.routers.vva-fe.entrypoints=websecure"
- "traefik.http.routers.vva-fe.tls.certresolver=myresolver"
- "traefik.http.middlewares.vva-fe-csp.headers.contentSecurityPolicy=default-src 'self'; img-src *.usersnap.com 'self' data:; script-src *.usersnap.com 'self' 'unsafe-inline' https://www.googletagmanager.com https://browser.sentry-cdn.com; style-src *.usersnap.com *.googleapis.com 'self' 'unsafe-inline' https://fonts.googleapis.com; connect-src *.usersnap.com https://s3.eu-central-1.amazonaws.com/upload.usersnap.com 'self' https://o4506155985141760.ingest.sentry.io/api/4506156032196608/envelope/ *.google-analytics.com; font-src *.usersnap.com *.gstatic.com 'self' 'unsafe-inline' https://fonts.gstatic.com; worker-src blob:"
- "traefik.http.routers.vva-fe.middlewares=vva-fe-csp@docker"
- "traefik.http.services.vva-fe.loadbalancer.server.port=80"

secrets:
Expand Down

0 comments on commit f1bf28a

Please sign in to comment.