-
Notifications
You must be signed in to change notification settings - Fork 0
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Ensure HTTP headers for CSP and HSTS are properly set for the admin #42
Labels
Comments
alextreme
added
bug
Something isn't working
triage
Triage means the team has not yet refined this issue.
owner: amsterdam
labels
Jul 10, 2024
joeribekker
removed
the
triage
Triage means the team has not yet refined this issue.
label
Jul 23, 2024
Coperh
added a commit
that referenced
this issue
Jul 26, 2024
Coperh
added a commit
that referenced
this issue
Aug 13, 2024
@Coperh Thanks and this looks good. I see that I overlooked that also the Cache Control header is to be set. This doesn't have to be set for the admin, but may be missing from the APIs if I see the Taiga issue. It could however also be a missing header on the AMS gateway. Please confirm or deny this and I'll communicate this back |
Coperh
added a commit
that referenced
this issue
Aug 16, 2024
Coperh
added a commit
that referenced
this issue
Aug 16, 2024
Coperh
added a commit
that referenced
this issue
Aug 19, 2024
Coperh
added a commit
that referenced
this issue
Aug 19, 2024
Coperh
added a commit
that referenced
this issue
Aug 20, 2024
Coperh
added a commit
that referenced
this issue
Aug 23, 2024
stevenbal
added a commit
that referenced
this issue
Aug 23, 2024
…HSTS 🔧[#42] add CSP setting help texts
Added in:
|
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Product versie / Product version
1.12 (OZ)
Omschrijf het probleem / Describe the bug
Taiga AMS 18
CSP headers should be set for the admin (see the Open Forms settings)
HSTS headers should be set for the admin and the API (minimum of 1 year, see the Open Forms settings)
After this has been done ensure new releases have been done for OZ+ON+Obj+OT
Stappen om te reproduceren / Steps to reproduce
No response
Verwacht gedrag / Expected behavior
No response
The text was updated successfully, but these errors were encountered: