Welcome to mirror list, hosted at ThFree Co, Russian Federation.

gitlab.com/gitlab-org/gitlab-foss.git - Unnamed repository; edit this file 'description' to name the repository.
summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorStan Hu <stanhu@gmail.com>2019-08-07 21:17:12 +0300
committerStan Hu <stanhu@gmail.com>2019-08-07 21:21:08 +0300
commitd265408c26b6d4a6087df032b1928d142534d0a6 (patch)
treee736852ce97c3709939cc8f1dfef2f95e32392d9 /lib/gitlab/content_security_policy
parent8d659869e1d8ef4a844ea03890f42cb80f312fa0 (diff)
Add missing report-uri to CSP config
This is supported in Rails 5.2, although it may be deprecated in the future by reports-to.
Diffstat (limited to 'lib/gitlab/content_security_policy')
-rw-r--r--lib/gitlab/content_security_policy/config_loader.rb2
1 files changed, 1 insertions, 1 deletions
diff --git a/lib/gitlab/content_security_policy/config_loader.rb b/lib/gitlab/content_security_policy/config_loader.rb
index b2f3345d33a..ff844645b11 100644
--- a/lib/gitlab/content_security_policy/config_loader.rb
+++ b/lib/gitlab/content_security_policy/config_loader.rb
@@ -5,7 +5,7 @@ module Gitlab
class ConfigLoader
DIRECTIVES = %w(base_uri child_src connect_src default_src font_src
form_action frame_ancestors frame_src img_src manifest_src
- media_src object_src script_src style_src worker_src).freeze
+ media_src object_src report_uri script_src style_src worker_src).freeze
def self.default_settings_hash
{