Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Ensure HTTP headers for CSP and HSTS are properly set for the admin #42

Closed
alextreme opened this issue Jul 10, 2024 · 2 comments · Fixed by #49 or #56
Closed

Ensure HTTP headers for CSP and HSTS are properly set for the admin #42

alextreme opened this issue Jul 10, 2024 · 2 comments · Fixed by #49 or #56
Assignees
Labels
bug Something isn't working owner: amsterdam

Comments

@alextreme
Copy link
Member

alextreme commented Jul 10, 2024

Product versie / Product version

1.12 (OZ)

Omschrijf het probleem / Describe the bug

Taiga AMS 18

CSP headers should be set for the admin (see the Open Forms settings)
HSTS headers should be set for the admin and the API (minimum of 1 year, see the Open Forms settings)

After this has been done ensure new releases have been done for OZ+ON+Obj+OT

Stappen om te reproduceren / Steps to reproduce

No response

Verwacht gedrag / Expected behavior

No response

@alextreme alextreme added bug Something isn't working triage Triage means the team has not yet refined this issue. owner: amsterdam labels Jul 10, 2024
@joeribekker joeribekker removed the triage Triage means the team has not yet refined this issue. label Jul 23, 2024
Coperh added a commit that referenced this issue Jul 26, 2024
Coperh added a commit that referenced this issue Aug 13, 2024
@alextreme
Copy link
Member Author

@Coperh Thanks and this looks good. I see that I overlooked that also the Cache Control header is to be set. This doesn't have to be set for the admin, but may be missing from the APIs if I see the Taiga issue. It could however also be a missing header on the AMS gateway. Please confirm or deny this and I'll communicate this back

Coperh added a commit that referenced this issue Aug 16, 2024
Coperh added a commit that referenced this issue Aug 16, 2024
Coperh added a commit that referenced this issue Aug 19, 2024
Coperh added a commit that referenced this issue Aug 19, 2024
Coperh added a commit that referenced this issue Aug 19, 2024
@Coperh Coperh reopened this Aug 19, 2024
Coperh added a commit that referenced this issue Aug 20, 2024
Coperh added a commit that referenced this issue Aug 23, 2024
stevenbal added a commit that referenced this issue Aug 23, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working owner: amsterdam
Projects
Status: Done
3 participants