Allow qr code iframe
Signed-off-by: Christian König <ckoenig@posteo.de>
This commit is contained in:
@ -93,9 +93,11 @@ $HTTP["url"] =~ "/teleporter\.php$" {
|
|||||||
}
|
}
|
||||||
|
|
||||||
# allow API qr code iframe on settings page
|
# allow API qr code iframe on settings page
|
||||||
$HTTP["url"] =~ "/admin/settings\.php$" {
|
$HTTP["url"] =~ "/api_token\.php$" {
|
||||||
|
$HTTP["referer"] =~ "/admin/settings\.php" {
|
||||||
setenv.add-response-header = ( "X-Frame-Options" => "SAMEORIGIN" )
|
setenv.add-response-header = ( "X-Frame-Options" => "SAMEORIGIN" )
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
# Default expire header
|
# Default expire header
|
||||||
expire.url = ( "" => "access plus 0 seconds" )
|
expire.url = ( "" => "access plus 0 seconds" )
|
||||||
|
@ -101,9 +101,11 @@ $HTTP["url"] =~ "/teleporter\.php$" {
|
|||||||
}
|
}
|
||||||
|
|
||||||
# allow API qr code iframe on settings page
|
# allow API qr code iframe on settings page
|
||||||
$HTTP["url"] =~ "/admin/settings\.php$" {
|
$HTTP["url"] =~ "/api_token\.php$" {
|
||||||
|
$HTTP["referer"] =~ "/admin/settings\.php" {
|
||||||
setenv.add-response-header = ( "X-Frame-Options" => "SAMEORIGIN" )
|
setenv.add-response-header = ( "X-Frame-Options" => "SAMEORIGIN" )
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
# Default expire header
|
# Default expire header
|
||||||
expire.url = ( "" => "access plus 0 seconds" )
|
expire.url = ( "" => "access plus 0 seconds" )
|
||||||
|
Reference in New Issue
Block a user