Re: Wicket 8: Content-Security-Policy header

2020-11-25 Thread Francesco Chicchiriccò
On 2020/11/24 15:49:58, Francesco Chicchiricc�� wrote: > Hi, > in a Wicket 8.8.0 application, I am following what suggested in > > https://ci.apache.org/projects/wicket/guide/8.x/single.html#_external_security_checks > > to add Content-Security-Policy header into response. > > My application e

Wicket 8: Content-Security-Policy header

2020-11-24 Thread Francesco Chicchiriccò
Hi, in a Wicket 8.8.0 application, I am following what suggested in https://ci.apache.org/projects/wicket/guide/8.x/single.html#_external_security_checks to add Content-Security-Policy header into response. My application extends AuthenticatedWebApplication so, when accessing the root page, I r