Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Korjataan CSP-raporttiendpointin polku #6156

Merged
merged 1 commit into from
Dec 19, 2024
Merged

Korjataan CSP-raporttiendpointin polku #6156

merged 1 commit into from
Dec 19, 2024

Conversation

Gekkio
Copy link
Contributor

@Gekkio Gekkio commented Dec 18, 2024

Tällä hetkellä näistä tulee CSRF-virhe, koska route ei osu ja mennään normaaliin API-käsittelyyn jossa CSRF-header on pakollinen.

Muutoksen jälkeen CSP-raportit tulee taas läpi ja CSRF-virheet vähenee

@Gekkio Gekkio added the tech Tekninen muutos, esim. refaktorointi label Dec 18, 2024
CSP policy says /csp, which previously had a special path rewrite in
nginx, but this no longer exists so we need to match the path 1:1
@Gekkio Gekkio force-pushed the fix-csp-report-path branch from 4378b10 to 6aa12bc Compare December 18, 2024 09:56
@Gekkio Gekkio merged commit 7a71d8e into master Dec 19, 2024
30 checks passed
@Gekkio Gekkio deleted the fix-csp-report-path branch December 19, 2024 13:00
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
tech Tekninen muutos, esim. refaktorointi
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants