BookStack/app/Config
Dan Brown 92922288dd
Added iframe CSP, improved session cookie security
Added iframe CSP headers with configuration via .env.
Updated session cookies to be lax by default, dynamically changing to
none when iframes configured to allow third-party control.
Updated cookie security to be auto-secure if a https APP_URL is set.

Related to #2427 and #2207.
2021-01-02 02:43:50 +00:00
..
api.php Added configurable API throttling, Handled API errors standardly 2020-01-18 15:03:28 +00:00
app.php Added iframe CSP, improved session cookie security 2021-01-02 02:43:50 +00:00
auth.php Simplified guard names and rolled out guard route checks 2020-02-02 13:10:21 +00:00
broadcasting.php Updated to Laravel 5.8 2019-09-13 23:58:40 +01:00
cache.php Ran phpcbf and updated helpers typehinting 2019-09-15 18:29:51 +01:00
database.php Ran phpcbf and updated helpers typehinting 2019-09-15 18:29:51 +01:00
debugbar.php Added laravel stats package and enabled debugbar models 2019-09-15 18:07:00 +01:00
dompdf.php Ran phpcbf and updated helpers typehinting 2019-09-15 18:29:51 +01:00
filesystems.php Ensured base64 images are read from image upload folder 2020-12-06 15:34:18 +00:00
hashing.php Ran phpcbf and updated helpers typehinting 2019-09-15 18:29:51 +01:00
logging.php Updated functionality for logging failed access 2020-07-28 12:59:43 +01:00
mail.php Ran phpcbf and updated helpers typehinting 2019-09-15 18:29:51 +01:00
queue.php Updated to Laravel 5.8 2019-09-13 23:58:40 +01:00
saml2.php Updated saml2 slo config so url is used if no repsonse url 2020-09-05 19:26:47 +01:00
services.php Added dump_user_details option to LDAP and added binary attribute decode option 2020-02-15 20:31:23 +00:00
session.php Added iframe CSP, improved session cookie security 2021-01-02 02:43:50 +00:00
setting-defaults.php added additional color settings into UI 2019-10-17 13:46:18 -05:00
snappy.php Fixed api query total not taking filters into account 2020-04-25 21:37:52 +01:00
view.php Moved config dir into app dir 2019-07-06 13:44:50 +01:00