refactor(appsettings): add appsettings.Security
This commit is contained in:
parent
cccbb36f94
commit
341cb175a9
@ -2133,6 +2133,9 @@
|
|||||||
</ItemGroup>
|
</ItemGroup>
|
||||||
|
|
||||||
<ItemGroup>
|
<ItemGroup>
|
||||||
|
<Content Update="appsettings.Security.json">
|
||||||
|
<CopyToOutputDirectory>Never</CopyToOutputDirectory>
|
||||||
|
</Content>
|
||||||
<Content Update="appsettings.UI.json">
|
<Content Update="appsettings.UI.json">
|
||||||
<CopyToOutputDirectory>Never</CopyToOutputDirectory>
|
<CopyToOutputDirectory>Never</CopyToOutputDirectory>
|
||||||
</Content>
|
</Content>
|
||||||
|
|||||||
14
EnvelopeGenerator.Web/appsettings.Security.json
Normal file
14
EnvelopeGenerator.Web/appsettings.Security.json
Normal file
@ -0,0 +1,14 @@
|
|||||||
|
{
|
||||||
|
"Content-Security-Policy": [ // The first format parameter {0} will be replaced by the nonce value.
|
||||||
|
"default-src 'self'",
|
||||||
|
"script-src 'self' 'nonce-{0}' 'unsafe-eval'",
|
||||||
|
"style-src 'self' 'unsafe-inline' https://fonts.googleapis.com:*",
|
||||||
|
"img-src 'self' data: https: blob:",
|
||||||
|
"font-src 'self' https://fonts.gstatic.com:*",
|
||||||
|
"connect-src 'self' https://nominatim.openstreetmap.org:* http://localhost:* https://localhost:* ws://localhost:* wss://localhost:* blob:",
|
||||||
|
"frame-src 'self'",
|
||||||
|
"media-src 'self'",
|
||||||
|
"object-src 'self'"
|
||||||
|
],
|
||||||
|
"AllowedOrigins": [ "https://localhost:7202", "https://digitale.unterschrift.wisag.de/" ]
|
||||||
|
}
|
||||||
@ -11,18 +11,6 @@
|
|||||||
"Microsoft.AspNetCore.Hosting.Diagnostics": "Warning"
|
"Microsoft.AspNetCore.Hosting.Diagnostics": "Warning"
|
||||||
}
|
}
|
||||||
},
|
},
|
||||||
"Content-Security-Policy": [ // The first format parameter {0} will be replaced by the nonce value.
|
|
||||||
"default-src 'self'",
|
|
||||||
"script-src 'self' 'nonce-{0}' 'unsafe-eval'",
|
|
||||||
"style-src 'self' 'unsafe-inline' https://fonts.googleapis.com:*",
|
|
||||||
"img-src 'self' data: https: blob:",
|
|
||||||
"font-src 'self' https://fonts.gstatic.com:*",
|
|
||||||
"connect-src 'self' https://nominatim.openstreetmap.org:* http://localhost:* https://localhost:* ws://localhost:* wss://localhost:* blob:",
|
|
||||||
"frame-src 'self'",
|
|
||||||
"media-src 'self'",
|
|
||||||
"object-src 'self'"
|
|
||||||
],
|
|
||||||
"AllowedOrigins": [ "https://localhost:7202", "https://digitale.unterschrift.wisag.de/" ],
|
|
||||||
"NLog": {
|
"NLog": {
|
||||||
"throwConfigExceptions": true,
|
"throwConfigExceptions": true,
|
||||||
"variables": {
|
"variables": {
|
||||||
|
|||||||
Loading…
x
Reference in New Issue
Block a user