当前位置:网站首页>About web content security policy directive some test cases specified through meta elements
About web content security policy directive some test cases specified through meta elements
2022-07-07 12:23:00 【InfoQ】
frame-src


test 1:3000 application ( Namely embedding 3002 Applied web In the application ) increase frame-src
<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src 'self'">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>


test 2

<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src 'http://localhost:3002'">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>

*


<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src http://localhost:3002/csp">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>
<html>
<head>
<meta http-equiv="Content-Security-Policy" content="frame-src http://localhost:*/csp">
</head>
<h1>Parent</h1>
<iframe src="http://localhost:3002/csp"></iframe>
</html>



边栏推荐
- Flet教程之 14 ListTile 基础入门(教程含源码)
- EPP+DIS学习之路(2)——Blink!闪烁!
- 112.网络安全渗透测试—[权限提升篇10]—[Windows 2003 LPK.DDL劫持提权&msf本地提权]
- Tutorial on the principle and application of database system (011) -- relational database
- 【纹理特征提取】基于matlab局部二值模式LBP图像纹理特征提取【含Matlab源码 1931期】
- UP Meta—Web3.0世界创新型元宇宙金融协议
- Completion report of communication software development and Application
- 【全栈计划 —— 编程语言之C#】基础入门知识一文懂
- Rationaldmis2022 advanced programming macro program
- 2022年在启牛开华泰的账户安全吗?
猜你喜欢

【紋理特征提取】基於matlab局部二值模式LBP圖像紋理特征提取【含Matlab源碼 1931期】

Flet教程之 15 GridView 基础入门(教程含源码)

UP Meta—Web3.0世界创新型元宇宙金融协议

Flet教程之 19 VerticalDivider 分隔符组件 基础入门(教程含源码)

【滤波跟踪】基于matlab捷联惯导仿真【含Matlab源码 1935期】
![110. Network security penetration test - [privilege promotion 8] - [windows sqlserver xp_cmdshell stored procedure authorization]](/img/62/1ec8885aaa2d4dca0e764b73a1e2df.png)
110. Network security penetration test - [privilege promotion 8] - [windows sqlserver xp_cmdshell stored procedure authorization]

VSCode的学习使用
![An error occurred when vscade tried to create a file in the target directory: access denied [resolved]](/img/14/9899f5a765872fb3238be4305a2dc7.png)
An error occurred when vscade tried to create a file in the target directory: access denied [resolved]

人大金仓受邀参加《航天七〇六“我与航天电脑有约”全国合作伙伴大会》

Sign up now | oar hacker marathon phase III midsummer debut, waiting for you to challenge
随机推荐
Apache installation problem: configure: error: APR not found Please read the documentation
Idea 2021 Chinese garbled code
Time bomb inside the software: 0-day log4shell is just the tip of the iceberg
[shortest circuit] acwing 1127 Sweet butter (heap optimized dijsktra or SPFA)
<No. 8> 1816. 截断句子 (简单)
Mastering the new functions of swiftui 4 weatherkit and swift charts
数据库系统原理与应用教程(008)—— 数据库相关概念练习题
[full stack plan - programming language C] basic introductory knowledge
【玩转 RT-Thread】 RT-Thread Studio —— 按键控制电机正反转、蜂鸣器
数据库系统原理与应用教程(010)—— 概念模型与数据模型练习题
(待会删)yyds,付费搞来的学术资源,请低调使用!
Cenos openssh upgrade to version 8.4
Is it safe to open Huatai's account in kainiu in 2022?
Swiftui tutorial how to realize automatic scrolling function in 2 seconds
Camera calibration (1): basic principles of monocular camera calibration and Zhang Zhengyou calibration
超标量处理器设计 姚永斌 第8章 指令发射 摘录
C#中在路径前加@的作用
Flet教程之 17 Card卡片组件 基础入门(教程含源码)
牛客网刷题网址
超标量处理器设计 姚永斌 第9章 指令执行 摘录