Loading README.md +2 −2 Original line number Diff line number Diff line Loading @@ -63,9 +63,9 @@ This virtual host simply redirects any HTTP request to the HTTPS endpoint. Header always set X-Frame-Options "SAMEORIGIN" Header always set Referrer-Policy "no-referrer" Header always set X-Content-Type-Options "nosniff" Header always set Content-Security-Policy "default-src 'self' https://tickets.technik.cl.uni-heidelberg.de; style-src 'self' 'unsafe-inline' https://tickets.technik.cl.uni-heidelberg.de data:; connect-src 'self' wss://tickets.technik.cl.uni-heidelberg.de; img-src 'self' http://tickets.technik.cl.uni-heidelberg.de https://tickets.technik.cl.uni-heidelberg.de" Header always set Content-Security-Policy "default-src 'self' https://tickets.technik.cl.uni-heidelberg.de; style-src 'self' 'unsafe-inline' https://tickets.technik.cl.uni-heidelberg.de data:; connect-src 'self' wss://tickets.technik.cl.uni-heidelberg.de; img-src 'self' http://tickets.technik.cl.uni-heidelberg.de https://tickets.technik.cl.uni-heidelberg.de; script-src 'self' https://tickets.technik.cl.uni-heidelberg.de 'wasm-unsafe-eval'" </VirtualHost> </IfModule> </IfModule>g ``` This virtual host contains the actual website configuration and the SSL configuration. Loading Loading
README.md +2 −2 Original line number Diff line number Diff line Loading @@ -63,9 +63,9 @@ This virtual host simply redirects any HTTP request to the HTTPS endpoint. Header always set X-Frame-Options "SAMEORIGIN" Header always set Referrer-Policy "no-referrer" Header always set X-Content-Type-Options "nosniff" Header always set Content-Security-Policy "default-src 'self' https://tickets.technik.cl.uni-heidelberg.de; style-src 'self' 'unsafe-inline' https://tickets.technik.cl.uni-heidelberg.de data:; connect-src 'self' wss://tickets.technik.cl.uni-heidelberg.de; img-src 'self' http://tickets.technik.cl.uni-heidelberg.de https://tickets.technik.cl.uni-heidelberg.de" Header always set Content-Security-Policy "default-src 'self' https://tickets.technik.cl.uni-heidelberg.de; style-src 'self' 'unsafe-inline' https://tickets.technik.cl.uni-heidelberg.de data:; connect-src 'self' wss://tickets.technik.cl.uni-heidelberg.de; img-src 'self' http://tickets.technik.cl.uni-heidelberg.de https://tickets.technik.cl.uni-heidelberg.de; script-src 'self' https://tickets.technik.cl.uni-heidelberg.de 'wasm-unsafe-eval'" </VirtualHost> </IfModule> </IfModule>g ``` This virtual host contains the actual website configuration and the SSL configuration. Loading