From 4cce1da4cbb8758c7a1c4c07e6073abf93b37b0b Mon Sep 17 00:00:00 2001 From: bom Date: Fri, 21 Oct 2022 11:21:43 +0200 Subject: [PATCH] Remove Content-Security-Policy header --- src/main/resources/website/nginx-configmap.yaml | 1 - 1 file changed, 1 deletion(-) diff --git a/src/main/resources/website/nginx-configmap.yaml b/src/main/resources/website/nginx-configmap.yaml index 1bdee73..74fad94 100644 --- a/src/main/resources/website/nginx-configmap.yaml +++ b/src/main/resources/website/nginx-configmap.yaml @@ -84,7 +84,6 @@ data: ssl_certificate_key /etc/certs/tls.key; server_name FQDN add_header Strict-Transport-Security 'max-age=31536000; includeSubDomains; preload'; - add_header Content-Security-Policy "default-src 'self'; font-src *;img-src * data:; script-src *; style-src *"; add_header X-XSS-Protection "1; mode=block"; add_header X-Frame-Options "SAMEORIGIN"; add_header X-Content-Type-Options nosniff;