diff options
author | Roeland Jago Douma <roeland@famdouma.nl> | 2019-01-08 09:33:34 +0100 |
---|---|---|
committer | Roeland Jago Douma <roeland@famdouma.nl> | 2019-01-08 15:36:40 +0100 |
commit | ad676c010257f9f3cf5e09f10d09f4ff11350e44 (patch) | |
tree | 4ac930ed1750d924c1f8502a1bd87c5642c69b28 /tests/lib/AppFramework/Http/DataResponseTest.php | |
parent | 68b478ea869fb953af6901bbb888a6f0c34f77c5 (diff) | |
download | nextcloud-server-ad676c010257f9f3cf5e09f10d09f4ff11350e44.tar.gz nextcloud-server-ad676c010257f9f3cf5e09f10d09f4ff11350e44.zip |
Set default frame-ancestors to 'self'
For #13042
Signed-off-by: Roeland Jago Douma <roeland@famdouma.nl>
Diffstat (limited to 'tests/lib/AppFramework/Http/DataResponseTest.php')
-rw-r--r-- | tests/lib/AppFramework/Http/DataResponseTest.php | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/tests/lib/AppFramework/Http/DataResponseTest.php b/tests/lib/AppFramework/Http/DataResponseTest.php index e1a1f98618c..67ffdde8669 100644 --- a/tests/lib/AppFramework/Http/DataResponseTest.php +++ b/tests/lib/AppFramework/Http/DataResponseTest.php @@ -68,7 +68,7 @@ class DataResponseTest extends \Test\TestCase { $expectedHeaders = [ 'Cache-Control' => 'no-cache, no-store, must-revalidate', - 'Content-Security-Policy' => "default-src 'none';base-uri 'none';manifest-src 'self';script-src 'self';style-src 'self' 'unsafe-inline';img-src 'self' data: blob:;font-src 'self' data:;connect-src 'self';media-src 'self'", + 'Content-Security-Policy' => "default-src 'none';base-uri 'none';manifest-src 'self';script-src 'self';style-src 'self' 'unsafe-inline';img-src 'self' data: blob:;font-src 'self' data:;connect-src 'self';media-src 'self';frame-ancestors 'self'", ]; $expectedHeaders = array_merge($expectedHeaders, $headers); |