Manual:$wgCSPReportOnlyHeader/de

Category:MediaWiki configuration settings/de#CSPReportOnlyHeaderCategory:MediaWiki configuration settings introduced in version 1.32.0/de#CSPReportOnlyHeaderCategory:MediaWiki configuration settings still in use/de#CSPReportOnlyHeaderCategory:Content Security Policy variables/de#CSPReportOnlyHeader
Sicherheit: $wgCSPReportOnlyHeader
Controls Content-Security-Policy-Report-Only header [Experimental]
Eingeführt in Version:1.32.0 (Gerrit change 253969; git #70941efd)
Entfernt in Version:Weiterhin vorhanden
Erlaubte Werte:(Wahrheitswert oder Array)
Standardwert:false

Details

This config option is exactly the same as $wgCSPHeader. Please see the documentation for that config option. The only difference is that this config doesn't block any requests. It only shows errors in the web browser javascript console, as well as the csp-report-only MediaWiki debug log (As opposed to the 'csp' debug log for the main header). You can set this to an entirely different value than $wgCSPHeader, if you want to test a potentially change before implementing it.

Siehe auch

Category:Content Security Policy variables/de Category:MediaWiki configuration settings/de Category:MediaWiki configuration settings introduced in version 1.32.0/de Category:MediaWiki configuration settings still in use/de