From 4f5e31c5f190dfa5cf7a6b5741113c264b77f888 Mon Sep 17 00:00:00 2001 From: Eduard Tihomirov Date: Mon, 17 Mar 2025 11:08:06 +0300 Subject: [PATCH 1/2] fix --- html/index.html | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/html/index.html b/html/index.html index c01988b..0d580bd 100644 --- a/html/index.html +++ b/html/index.html @@ -5,7 +5,7 @@ + content="default-src 'self'; connect-src 'self' https://xn--1-6tb.xn--b1afabzvcegckfhg.xn--p1ai/ https://xn--2-6tb.xn--b1afbulhcegckfhg.xn--p1ai/; script-src 'self'; style-src 'unsafe-inline' 'self' data:; font-src 'self' data:; img-src 'self' data:"/> From 985be85873c1f3b80d1a2929947533b257349a54 Mon Sep 17 00:00:00 2001 From: Eduard Tihomirov Date: Mon, 17 Mar 2025 11:17:40 +0300 Subject: [PATCH 2/2] fix --- config/nginx.conf.template | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/config/nginx.conf.template b/config/nginx.conf.template index 581e146..fa3eeab 100644 --- a/config/nginx.conf.template +++ b/config/nginx.conf.template @@ -57,7 +57,7 @@ server { index index.html; expires -1; - add_header Content-Security-Policy "frame-ancestors 'none'; default-src 'self'; connect-src 'self' http://xn--1-6tb.xn--b1afabzvcegckfhg.xn--p1ai/ https://xn--2-6tb.xn--b1afbulhcegckfhg.xn--p1ai/; script-src 'self'; style-src 'unsafe-inline' 'self' data:; font-src 'self' data:; img-src 'self' data:;"; + add_header Content-Security-Policy "frame-ancestors 'none'; default-src 'self'; connect-src 'self' https://xn--1-6tb.xn--b1afabzvcegckfhg.xn--p1ai/ https://xn--2-6tb.xn--b1afbulhcegckfhg.xn--p1ai/; script-src 'self'; style-src 'unsafe-inline' 'self' data:; font-src 'self' data:; img-src 'self' data:;"; # Media: images, icons, video, audio, HTC location ~* \.(?:jpg|jpeg|gif|png|ico|cur|gz|svg|svgz|mp4|mp3|ogg|ogv|webm|htc|woff2|woff|ttf)$ {