diff options
author | rinpatch <rinpatch@sdf.org> | 2020-06-10 20:09:16 +0300 |
---|---|---|
committer | rinpatch <rinpatch@sdf.org> | 2020-06-10 20:09:16 +0300 |
commit | 99afc7f4e423997079aaee1287b9ffb28a851d8b (patch) | |
tree | 96a811403cbc294b5c612dc2b0acdc0d2f4db2be | |
parent | 1b746cfbbb55cd3411e809ead246c752a43361d0 (diff) | |
download | pleroma-99afc7f4e423997079aaee1287b9ffb28a851d8b.tar.gz |
HTTP security plug: add media proxy base url host to csp
-rw-r--r-- | lib/pleroma/plugs/http_security_plug.ex | 5 |
1 files changed, 5 insertions, 0 deletions
diff --git a/lib/pleroma/plugs/http_security_plug.ex b/lib/pleroma/plugs/http_security_plug.ex index 6a339b32c..620408d0f 100644 --- a/lib/pleroma/plugs/http_security_plug.ex +++ b/lib/pleroma/plugs/http_security_plug.ex @@ -113,6 +113,10 @@ defmodule Pleroma.Plugs.HTTPSecurityPlug do add_source(acc, host) end) + media_proxy_base_url = + if Config.get([Pleroma.Upload, :base_url]), + do: URI.parse(Config.get([:media_proxy, :base_url])).host + upload_base_url = if Config.get([Pleroma.Upload, :base_url]), do: URI.parse(Config.get([Pleroma.Upload, :base_url])).host @@ -122,6 +126,7 @@ defmodule Pleroma.Plugs.HTTPSecurityPlug do do: URI.parse(Config.get([Pleroma.Uploaders.S3, :public_endpoint])).host [] + |> add_source(media_proxy_base_url) |> add_source(upload_base_url) |> add_source(s3_endpoint) |> add_source(media_proxy_whitelist) |