Content-Security-Policy-Vulnerability/EN/Background

Aus Siwecos
Version vom 4. Juli 2018, 10:08 Uhr von Siwebot (Diskussion | Beiträge) (Die Seite wurde neu angelegt: „Content Security Policy (CSP) requires careful coordination and precise definition of the security concept. If this option is enabled, CSP has considerable imp…“)
(Unterschied) ← Nächstältere Version | Aktuelle Version (Unterschied) | Nächstjüngere Version → (Unterschied)
Wechseln zu: Navigation, Suche

Content Security Policy (CSP) requires careful coordination and precise definition of the security concept. If this option is enabled, CSP has considerable impact on the way the browser renders pages (for example, inline Javascript is disabled by default and must be allowed explicitly in the policy). CSP can prevend a number of attachs such as Cross-Site Scripting and other attacks which inject data in web pages.