diff --git a/.gitlab/ci/build_additional_files/.htaccess b/.gitlab/ci/build_additional_files/.htaccess index be0bc56513bebbd24e1a7ede80ef44cc8cb9ff74..b439f7964b0b58e82f5651f2848e52bc96cfaa97 100644 --- a/.gitlab/ci/build_additional_files/.htaccess +++ b/.gitlab/ci/build_additional_files/.htaccess @@ -59,7 +59,7 @@ ErrorDocument 404 /404.html Header always set Strict-Transport-Security: max-age=15768000 ## Content-Security-Policy (CSP) - Header set Content-Security-Policy "default-src 'none'; style-src 'self'; img-src 'self' https://statistiques.adullact.org ; script-src 'self' https://statistiques.adullact.org 'sha256-Oj7byVaFtnTXnxkJUhS8WcENCO4gmFgzKQ47r9DQhcU='; base-uri 'self'; connect-src 'self'; font-src 'self'; form-action 'self'; manifest-src 'self'; media-src 'self'; object-src 'none'; worker-src 'none'; frame-src 'none'; frame-ancestors 'none';" + Header set Content-Security-Policy "default-src 'none'; style-src 'self'; img-src 'self' https://statistiques.adullact.org ; script-src 'self' https://statistiques.adullact.org 'sha256-Oj7byVaFtnTXnxkJUhS8WcENCO4gmFgzKQ47r9DQhcU='; base-uri 'self'; connect-src 'self'; font-src 'self'; form-action 'self'; manifest-src 'self'; media-src 'self'; object-src 'none'; worker-src 'none'; frame-src 'none'; frame-ancestors 'none'; report-uri https://c2680d76820a734f351b76296ae60321.report-uri.com/r/d/csp/enforce;" </ifModule> ######################################################################################