From f763e6dd8469c77eec6771941f318092f3dc4e61 Mon Sep 17 00:00:00 2001 From: samuel-p Date: Tue, 17 Dec 2019 18:40:01 +0100 Subject: [PATCH] updated .htaccess --- src/.htaccess | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/src/.htaccess b/src/.htaccess index d04c23c..1220650 100644 --- a/src/.htaccess +++ b/src/.htaccess @@ -1,5 +1,6 @@ RewriteEngine On + +Header always set "Content-Security-Policy" "default-src 'none'; img-src 'self'; script-src 'self'; style-src 'self'" + RewriteCond %{HTTPS} off RewriteRule (.*) https://%{HTTP_HOST}%{REQUEST_URI} [R=301,L] - -Header add Content-Security-Policy "default-src 'none'; img-src 'self'; script-src 'self'; style-src 'self'"