mirror of
https://github.com/kevinveenbirkenbach/computer-playbook.git
synced 2025-08-29 15:06:26 +02:00
Optimized CSP rules
This commit is contained in:
@@ -17,7 +17,7 @@ domains:
|
||||
- "meet.{{ primary_domain }}"
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
style-src:
|
||||
unsafe-inline: true
|
@@ -12,7 +12,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
whitelist:
|
||||
font-src:
|
||||
|
@@ -15,7 +15,7 @@ features:
|
||||
central_database: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
|
@@ -12,7 +12,7 @@ features:
|
||||
central_database: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
|
@@ -14,7 +14,7 @@ features:
|
||||
recaptcha: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
|
@@ -15,7 +15,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
domains:
|
||||
|
@@ -7,7 +7,7 @@ public_api_activated: False # Security hol
|
||||
version: "latest" # Docker Image version
|
||||
features:
|
||||
matomo: true
|
||||
css: true
|
||||
css: false
|
||||
portfolio_iframe: true
|
||||
central_database: true
|
||||
oidc: true
|
||||
|
@@ -16,8 +16,9 @@ features:
|
||||
domains:
|
||||
canonical:
|
||||
- "mail.{{ primary_domain }}"
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
unsafe-inline: true
|
||||
csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
@@ -8,12 +8,12 @@ features:
|
||||
oauth2: false
|
||||
csp:
|
||||
whitelist:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
- https://cdn.matomo.cloud
|
||||
style-src:
|
||||
- https://fonts.googleapis.com
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
|
@@ -20,7 +20,7 @@ features:
|
||||
central_database: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
@@ -29,7 +29,7 @@ csp:
|
||||
connect-src:
|
||||
- "{{ primary_domain }}"
|
||||
- "matrix.{{ primary_domain }}"
|
||||
script-src:
|
||||
script-src-elem:
|
||||
- "element.{{ primary_domain }}"
|
||||
- "https://cdn.jsdelivr.net"
|
||||
plugins:
|
||||
|
@@ -12,7 +12,7 @@ features:
|
||||
oidc: false
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
@@ -21,7 +21,7 @@ csp:
|
||||
font-src:
|
||||
- "data:"
|
||||
- "blob:"
|
||||
script-src:
|
||||
script-src-elem:
|
||||
- "https://cdn.jsdelivr.net"
|
||||
domains:
|
||||
canonical:
|
||||
|
13
roles/docker-nextcloud/Update.md
Normal file
13
roles/docker-nextcloud/Update.md
Normal file
@@ -0,0 +1,13 @@
|
||||
# Update Nextcloud (manuel)
|
||||
|
||||
To perform a manuel Nexcloud update execute:
|
||||
|
||||
```bash
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ upgrade
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ maintenance:repair --include-expensive
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ app:update --all
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ db:add-missing-columns
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ db:add-missing-indices
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ db:add-missing-primary-keys
|
||||
docker-compose exec -T -u www-data application /var/www/html/occ maintenance:mode --off
|
||||
```
|
@@ -3,7 +3,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
whitelist:
|
||||
font-src:
|
||||
|
@@ -15,7 +15,7 @@ features:
|
||||
oauth2: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
|
@@ -7,7 +7,7 @@ features:
|
||||
oidc: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
|
@@ -17,7 +17,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
whitelist:
|
||||
font-src:
|
||||
|
@@ -14,7 +14,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
domains:
|
||||
aliases:
|
||||
|
@@ -7,7 +7,7 @@ features:
|
||||
central_database: true
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
|
@@ -4,7 +4,7 @@ features:
|
||||
portfolio_iframe: false
|
||||
csp:
|
||||
whitelist:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
- https://cdn.jsdelivr.net
|
||||
- https://kit.fontawesome.com
|
||||
style-src:
|
||||
@@ -19,7 +19,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
domains:
|
||||
canonical:
|
||||
|
@@ -5,7 +5,7 @@ features:
|
||||
|
||||
csp:
|
||||
whitelist:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
- https://cdnjs.cloudflare.com
|
||||
- https://code.jquery.com
|
||||
- https://cdn.jsdelivr.net
|
||||
@@ -17,7 +17,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-eval: true
|
||||
domains:
|
||||
canonical:
|
||||
|
@@ -9,7 +9,7 @@ domains:
|
||||
- "inventory.{{ primary_domain }}"
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
|
@@ -4,7 +4,7 @@ features:
|
||||
portfolio_iframe: false
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
|
@@ -15,7 +15,7 @@ features:
|
||||
|
||||
csp:
|
||||
flags:
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
style-src:
|
||||
|
@@ -20,7 +20,7 @@ csp:
|
||||
flags:
|
||||
style-src:
|
||||
unsafe-inline: true
|
||||
script-src:
|
||||
script-src-elem:
|
||||
unsafe-inline: true
|
||||
unsafe-eval: true
|
||||
whitelist:
|
||||
@@ -29,7 +29,7 @@ csp:
|
||||
font-src:
|
||||
- "data:"
|
||||
- "https://fonts.bunny.net"
|
||||
script-src:
|
||||
script-src-elem:
|
||||
- "https://cdn.gtranslate.net"
|
||||
- "blog.{{ primary_domain }}"
|
||||
style-src:
|
||||
|
Reference in New Issue
Block a user