Content Security Policy ( Content-Security-Policy)

Hi, I am drafting a Content Security Policy for our DHIS2 servers to meet a security recommendation and got some guidance from Content Security Policy - OWASP Cheat Sheet Series

What are the community’ recommendations? Any tips and tricks for a “strict” implementation?
any limitations or behaviours to watch out for?

Please share. thank you.

Hi @jokoegwale

Welcome to the community!

Please note the link you shared is an external link and cannot be endorsed in the community; however, for an official resource such as the DHIS2 documentation: https://docs.dhis2.org/en/manage/performing-system-administration/dhis-core-version-master/installation.html

You might want to join the weekly server meetups where similar topics are brought up and if you have any specific questions, you’re welcome to post them in the support or in the Server Administration - Administration-du-Serveur category depending on the issue:

For more information about the meetups: Weekly Server Admin Meeting Series

Thanks!

1 Like