fix csp for prdouction web server

This commit is contained in:
Tankred Hase 2013-09-27 16:17:38 +02:00
parent 01902f1fe4
commit 7b16d6b713
1 changed files with 6 additions and 6 deletions

View File

@ -20,20 +20,20 @@ module.exports = function(grunt) {
prod: {
options: {
port: process.env.PORT || 8585,
base: './src/',
base: './dist/',
keepalive: true,
middleware: function(connect, options) {
// Return array of whatever middlewares you want
return [function(req, res, next) {
res.setHeader('Content-Security-Policy', "default-src 'self'; script-src 'self' 'unsafe-eval'; connect-src *; object-src 'none'; style-src 'self' 'unsafe-inline'");
res.setHeader('X-Content-Security-Policy', "default-src *; script-src 'self' 'unsafe-eval'; options eval-script; object-src 'none'; style-src 'self' 'unsafe-inline'");
res.setHeader('X-WebKit-CSP', "default-src 'self'; script-src 'self' 'unsafe-eval'; connect-src *; object-src 'none'; style-src 'self' 'unsafe-inline'");
return [
function(req, res, next) {
res.setHeader('Content-Security-Policy', "default-src 'self'; connect-src *; object-src 'none'; style-src 'self' 'unsafe-inline'");
return next();
},
// Serve static files.
connect.static(options.base)];
connect.static(options.base)
];
}
}
}