mirror of
https://github.com/zitadel/zitadel.git
synced 2025-08-12 16:47:32 +00:00
fix(console): static assets, edit csp (#3153)
* fix: static font, icons * mat icon package * csp * lint * rm csp line
This commit is contained in:
@@ -73,13 +73,9 @@ func csp(zitadelDomain string) *middleware.CSP {
|
||||
zitadelDomain = "*." + zitadelDomain
|
||||
}
|
||||
csp := middleware.DefaultSCP
|
||||
csp.StyleSrc = csp.StyleSrc.AddInline().AddHost("fonts.googleapis.com").AddHost("maxst.icons8.com") //TODO: host it
|
||||
csp.FontSrc = csp.FontSrc.AddHost("fonts.gstatic.com").AddHost("maxst.icons8.com") //TODO: host it
|
||||
csp.StyleSrc = csp.StyleSrc.AddInline()
|
||||
csp.ScriptSrc = csp.ScriptSrc.AddEval()
|
||||
csp.ConnectSrc = csp.ConnectSrc.AddHost(zitadelDomain).
|
||||
AddHost("fonts.googleapis.com").
|
||||
AddHost("fonts.gstatic.com").
|
||||
AddHost("maxst.icons8.com") //TODO: host it
|
||||
csp.ConnectSrc = csp.ConnectSrc.AddHost(zitadelDomain)
|
||||
csp.ImgSrc = csp.ImgSrc.AddHost(zitadelDomain).AddScheme("blob")
|
||||
return &csp
|
||||
}
|
||||
|
Reference in New Issue
Block a user