From b6f7f802b49734551d2f9afad8274debde56d1d0 Mon Sep 17 00:00:00 2001 From: welpo Date: Mon, 17 Jul 2023 22:12:42 +0200 Subject: [PATCH] =?UTF-8?q?=F0=9F=92=84=20docs:=20add=20code=20type=20to?= =?UTF-8?q?=20codeblock?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- content/blog/security.ca.md | 2 +- content/blog/security.es.md | 2 +- content/blog/security.md | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/content/blog/security.ca.md b/content/blog/security.ca.md index 6ab0b82ef..8a3726093 100644 --- a/content/blog/security.ca.md +++ b/content/blog/security.ca.md @@ -12,7 +12,7 @@ La configuració per defecte del tema obté una puntuació A+ a l'[Observatori d Això s'aconsegueix configurant programàticament les capçaleres de la Política de Seguretat de Contingut (CSP) basant-se en una llista de dominis permesos definida per l'usuari en el fitxer `config.toml`. Aquí tens la configuració per defecte i recomanada (pots eliminar l'última directiva si no vols inserir vídeos de YouTube): -``` +```toml [extra] allowed_domains = [ { directive = "font-src", domains = ["'self'", "data:"] }, diff --git a/content/blog/security.es.md b/content/blog/security.es.md index c2f62c71b..9babb9844 100644 --- a/content/blog/security.es.md +++ b/content/blog/security.es.md @@ -12,7 +12,7 @@ La configuración predeterminada del tema obtiene una calificación de A+ en [Mo Esto se logra configurando programáticamente las cabeceras de la Política de Seguridad de Contenido (CSP) en función de una lista de dominios permitidos definida por el usuario en el archivo `config.toml`. Aquí tienes la configuración predeterminada y recomendada (puedes eliminar la última directiva si no deseas insertar videos de YouTube): -``` +```toml [extra] allowed_domains = [ { directive = "font-src", domains = ["'self'", "data:"] }, diff --git a/content/blog/security.md b/content/blog/security.md index 0479af475..7b812efaf 100644 --- a/content/blog/security.md +++ b/content/blog/security.md @@ -12,7 +12,7 @@ The default configuration of the theme gets an A+ score on [Mozilla Observatory] This is accomplished by programatically configuring Content Security Policy (CSP) headers based on a user-defined list of allowed domains in the `config.toml` file. Here's the default and recommended setup (you could remove the last directive if you don't want to embed YouTube videos): -``` +```toml [extra] allowed_domains = [ { directive = "font-src", domains = ["'self'", "data:"] },