From 42e0599f8223102d1ddbbdad3c41c95dabe8b0ac Mon Sep 17 00:00:00 2001 From: Timo Bejan Date: Wed, 10 Nov 2021 10:54:44 +0200 Subject: [PATCH] csp-fix --- docker/common/nginx/nginx.conf | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/docker/common/nginx/nginx.conf b/docker/common/nginx/nginx.conf index 2e591afd5..d5a51c6d8 100644 --- a/docker/common/nginx/nginx.conf +++ b/docker/common/nginx/nginx.conf @@ -6,7 +6,8 @@ server { root /usr/share/nginx/html; # SSL stuff for cloudflare proxy-ing - ignores SSL certificate and uses SNI - add_header Content-Security-Policy "default-src 'self';"; + add_header Content-Security-Policy "default-src 'self'; style-src 'unsafe-inline'; script-src 'self'"; + proxy_ssl_verify off; proxy_read_timeout 1m;