Closed Bug 1293689 Opened 4 years ago Closed 4 years ago

Bring Bugzilla::CGI::ContentSecurityPolicy to BMO (Backport Bug 1286287)

Categories

(bugzilla.mozilla.org :: General, defect)

Production
defect
Not set
normal

Tracking

()

RESOLVED FIXED

People

(Reporter: dylan, Assigned: dylan)

References

(Blocks 1 open bug)

Details

Attachments

(1 file, 1 obsolete file)

We'll need to bring this to BMO. We may need to disable it ($cgi->content_security_policy(disable => 1)) for some extension pages.
Assignee: nobody → dylan
Attached patch 1293689_1.patch (obsolete) — Splinter Review
Attachment #8795087 - Flags: review?(dkl)
Comment on attachment 8795087 [details] [diff] [review]
1293689_1.patch

Review of attachment 8795087 [details] [diff] [review]:
-----------------------------------------------------------------

r=dkl
Attachment #8795087 - Flags: review?(dkl) → review+
Attached patch 1293689_3.patchSplinter Review
slight variation, disables CSP by default
Attachment #8795087 - Attachment is obsolete: true
Attachment #8798134 - Flags: review?(dkl)
Comment on attachment 8798134 [details] [diff] [review]
1293689_3.patch

Review of attachment 8798134 [details] [diff] [review]:
-----------------------------------------------------------------

r=dkl
Attachment #8798134 - Flags: review?(dkl) → review+
To git@github.com:mozilla-bteam/bmo.git
   54a873a..1251623  master -> master
Status: NEW → RESOLVED
Closed: 4 years ago
Resolution: --- → FIXED
You need to log in before you can comment on or make changes to this bug.