当前位置:网站首页>About web content security policy directive some test cases specified through meta elements
About web content security policy directive some test cases specified through meta elements
2022-07-07 12:23:00 【InfoQ】
frame-src
test 1:3000 application ( Namely embedding 3002 Applied web In the application ) increase frame-src
<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src 'self'">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>
test 2
<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src 'http://localhost:3002'">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>
*
<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src http://localhost:3002/csp">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>
<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src http://localhost:*/csp">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>
边栏推荐
- 消息队列消息丢失和消息重复发送的处理策略
- C#中在路径前加@的作用
- Baidu digital person Du Xiaoxiao responded to netizens' shouts online to meet the Shanghai college entrance examination English composition
- Superscalar processor design yaoyongbin Chapter 10 instruction submission excerpt
- HCIA复习整理
- 【数据聚类】基于多元宇宙优化DBSCAN实现数据聚类分析附matlab代码
- 数据库系统原理与应用教程(011)—— 关系数据库
- NGUI-UILabel
- (待会删)yyds,付费搞来的学术资源,请低调使用!
- Up meta - Web3.0 world innovative meta universe financial agreement
猜你喜欢
Explore cloud database of cloud services together
人大金仓受邀参加《航天七〇六“我与航天电脑有约”全国合作伙伴大会》
ES底层原理之倒排索引
[neural network] convolutional neural network CNN [including Matlab source code 1932]
Hi3516全系统类型烧录教程
消息队列消息丢失和消息重复发送的处理策略
[extraction des caractéristiques de texture] extraction des caractéristiques de texture de l'image LBP basée sur le mode binaire local de Matlab [y compris le code source de Matlab 1931]
Up meta - Web3.0 world innovative meta universe financial agreement
MATLAB實現Huffman編碼譯碼含GUI界面
Flet教程之 14 ListTile 基础入门(教程含源码)
随机推荐
Basic introduction to the 16 tabs tab control in the fleet tutorial (the tutorial includes source code)
[texture feature extraction] LBP image texture feature extraction based on MATLAB local binary mode [including Matlab source code 1931]
30. Few-shot Named Entity Recognition with Self-describing Networks 阅读笔记
关于 Web Content-Security-Policy Directive 通过 meta 元素指定的一些测试用例
Superscalar processor design yaoyongbin Chapter 9 instruction execution excerpt
Flet tutorial 17 basic introduction to card components (tutorial includes source code)
Unity map auto match material tool map auto add to shader tool shader match map tool map made by substance painter auto match shader tool
Tutorial on principles and applications of database system (007) -- related concepts of database
[filter tracking] comparison between EKF and UKF based on MATLAB extended Kalman filter [including Matlab source code 1933]
盘点JS判断空对象的几大方法
Upgrade from a tool to a solution, and the new site with praise points to new value
Flet教程之 15 GridView 基础入门(教程含源码)
108.网络安全渗透测试—[权限提升篇6]—[Windows内核溢出提权]
Tutorial on the principle and application of database system (008) -- exercises on database related concepts
数据库系统原理与应用教程(009)—— 概念模型与数据模型
112. Network security penetration test - [privilege promotion article 10] - [Windows 2003 lpk.ddl hijacking rights lifting & MSF local rights lifting]
跨域问题解决方案
Camera calibration (2): summary of monocular camera calibration
An error occurred when vscade tried to create a file in the target directory: access denied [resolved]
全球首堆“玲龙一号”反应堆厂房钢制安全壳上部筒体吊装成功