Index: openacs-4/packages/openacs-bootstrap3-theme/resources/masters/plain-master.tcl =================================================================== RCS file: /usr/local/cvsroot/openacs-4/packages/openacs-bootstrap3-theme/resources/masters/plain-master.tcl,v diff -u -r1.1 -r1.2 --- openacs-4/packages/openacs-bootstrap3-theme/resources/masters/plain-master.tcl 8 Jul 2016 16:13:35 -0000 1.1 +++ openacs-4/packages/openacs-bootstrap3-theme/resources/masters/plain-master.tcl 7 Aug 2017 23:48:13 -0000 1.2 @@ -70,5 +70,16 @@ # User messages util_get_user_messages -multirow user_messages +# +# Security settings +# set csrf [security::csrf::new] +security::csp::require img-src ipv6-test.com + +security::csp::require style-src maxcdn.bootstrapcdn.com +security::csp::require script-src maxcdn.bootstrapcdn.com + +security::csp::require font-src 'self' +security::csp::require font-src maxcdn.bootstrapcdn.com +