summaryrefslogtreecommitdiffstats
path: root/lib/private/response.php
diff options
context:
space:
mode:
authorLukas Reschke <lukas@owncloud.com>2014-10-30 00:00:40 +0100
committerLukas Reschke <lukas@owncloud.com>2014-10-30 00:00:40 +0100
commitb3f881748d968779120aa702142ed47eb66251ba (patch)
treef52075973556081980914548c022e987ab831f7a /lib/private/response.php
parente8703f648d70bbe4d5232b9a14e2a1d45bbf2314 (diff)
downloadnextcloud-server-b3f881748d968779120aa702142ed47eb66251ba.tar.gz
nextcloud-server-b3f881748d968779120aa702142ed47eb66251ba.zip
Allow any outgoing XHR connections
Quickfix for https://github.com/owncloud/core/issues/11064
Diffstat (limited to 'lib/private/response.php')
-rw-r--r--lib/private/response.php3
1 files changed, 2 insertions, 1 deletions
diff --git a/lib/private/response.php b/lib/private/response.php
index caa382af776..cf18115111a 100644
--- a/lib/private/response.php
+++ b/lib/private/response.php
@@ -212,7 +212,8 @@ class OC_Response {
. 'frame-src *; '
. 'img-src *; '
. 'font-src \'self\' data:; '
- . 'media-src *');
+ . 'media-src *; '
+ . 'connect-src *');
header('Content-Security-Policy:' . $policy);
// https://developers.google.com/webmasters/control-crawl-index/docs/robots_meta_tag