[jira] [Commented] (OFBIZ-11889) fixes for csp-report subsystem

Previous Topic Next Topic
 
classic Classic list List threaded Threaded
1 message Options
Reply | Threaded
Open this post in threaded view
|

[jira] [Commented] (OFBIZ-11889) fixes for csp-report subsystem

Nicolas Malin (Jira)

    [ https://issues.apache.org/jira/browse/OFBIZ-11889?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=17158012#comment-17158012 ]

Jacques Le Roux commented on OFBIZ-11889:
-----------------------------------------

OK, I'll have a look at what we can do here. I really would like to have a clean browser log too, and I was the one who put CSP in, so...

> fixes for csp-report subsystem
> ------------------------------
>
>                 Key: OFBIZ-11889
>                 URL: https://issues.apache.org/jira/browse/OFBIZ-11889
>             Project: OFBiz
>          Issue Type: Improvement
>          Components: ALL COMPONENTS
>    Affects Versions: Release Branch 17.12, Trunk
>            Reporter: Alex Bodnaru
>            Assignee: Jacques Le Roux
>            Priority: Major
>         Attachments: csp-report.patch
>
>   Original Estimate: 1h
>  Remaining Estimate: 1h
>
> added report-uri and unsafe-inline support for csp report.
> added handling of csp-reports and logging them as errors.
> unhandled reports are poluting the browser error console.



--
This message was sent by Atlassian Jira
(v8.3.4#803005)