Security/CSP/XSSModule: Difference between revisions

no edit summary
No edit summary
No edit summary
Line 34: Line 34:
<pre>directive              = block-xss / block-eval / script-src
<pre>directive              = block-xss / block-eval / script-src
</pre>  
</pre>  
The semantics of these directives are described in the following section.
The browser MUST ignore any&nbsp;X-Content-Security-Policy header fields occurring in an HTML meta tag or in the Trailer headers. &nbsp;The semantics of these directives are described in the following section.


= Semantics  =
= Semantics  =
118

edits