CONTENT_SECURITY_POLICY_HEADER
- Description:
-
This registry setting specifies the
CONTENT-SECURITY-POLICY
header on the HTTP packets.Use this registry setting to specify a regular expression of possible URLs that can frame the WFM application. Used when you want to display your WFM instance in an iFrame (inline frame) within your browser. This is often done when WFM is deployed as part of a solution with Infor OS Portal. You cannot define multiple hosts or use wild card characters when specifying the URL. For more information on how to set this header, see the following w3c sites:
- https://w3c.github.io/webappsec-csp/
- https://www.w3.org/TR/CSP/#content-security-policy-header-field
/system/security/CONTENT_SECURITY_POLICY_HEADER is for supported versions of the Chrome browser.
- Valid Values:
-
Valid URL for a WFM instance.
- Default Value:
-
none
Note: If no value is set by the user, WFM internally sets this value toself
. In other words, HTTP headers are always set. - Location:
-
/system/security
- Effective:
-
6.1.6