security
Posted: 05 Nov 2017, 12:56
Hello
I'm in the middle of migrating from old fedora and old mantis to new ubuntu and new mantis.
I have in my old mantis background colors but I can't see them in the new mantis,
the old mantis doesn't have CSP rolls, i think that it related.
but today I had noticed that when I tried to load the demo of mantis from the mantis site
i get the same problem
Refused to load the font 'data:font/woff;base64,d09GRgABAAAAAI3gABIAAAABRWQAAQABAAAAAAAAAAAAAAAAAAAAAAAAAABHUE9TAAABlAAACMoAABJKyujMg0dTVUIAAApgAAAAUwAAAHCOOI56T1MvMgAACrQAAABcAAAAYNk4qA5jbWFwAAALEAAAAIEAAAC0jBiQAGN2dCAAAAuUAAAAGgAAABoA7AimZnBnbQAAC7AAAAECAAABcwZZnDdnYXNwAAAMtAAAAAwAAAAMACIAGGdseWYAAAzAAABSygAAubBheDH9aGRteAAAX4wAAAoHAAAUKE4Jg9doZWFkAABplAAAADYAAAA2/E/x4WhoZWEAAGnMAAAAHwAAACQPaQc8aG10eAAAaewAAAIMAAADbmB1YDdrZXJuAABr+AAAHTYAAFcYYDRhP2xvY2EAAIkwAAABvgAAAb6LJGLGbWF4cAAAivAAAAAgAAAAIAL2BApuYW1lAACLEAAAANMAAAF4HEI4H3Bvc...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' because it violates the following Content Security Policy directive: "font-src fonts.gstatic.com maxcdn.bootstrapcdn.com".
so maybe it's not my mantis
can you help
thanks
I'm in the middle of migrating from old fedora and old mantis to new ubuntu and new mantis.
I have in my old mantis background colors but I can't see them in the new mantis,
the old mantis doesn't have CSP rolls, i think that it related.
but today I had noticed that when I tried to load the demo of mantis from the mantis site
i get the same problem
Refused to load the font 'data:font/woff;base64,d09GRgABAAAAAI3gABIAAAABRWQAAQABAAAAAAAAAAAAAAAAAAAAAAAAAABHUE9TAAABlAAACMoAABJKyujMg0dTVUIAAApgAAAAUwAAAHCOOI56T1MvMgAACrQAAABcAAAAYNk4qA5jbWFwAAALEAAAAIEAAAC0jBiQAGN2dCAAAAuUAAAAGgAAABoA7AimZnBnbQAAC7AAAAECAAABcwZZnDdnYXNwAAAMtAAAAAwAAAAMACIAGGdseWYAAAzAAABSygAAubBheDH9aGRteAAAX4wAAAoHAAAUKE4Jg9doZWFkAABplAAAADYAAAA2/E/x4WhoZWEAAGnMAAAAHwAAACQPaQc8aG10eAAAaewAAAIMAAADbmB1YDdrZXJuAABr+AAAHTYAAFcYYDRhP2xvY2EAAIkwAAABvgAAAb6LJGLGbWF4cAAAivAAAAAgAAAAIAL2BApuYW1lAACLEAAAANMAAAF4HEI4H3Bvc...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' because it violates the following Content Security Policy directive: "font-src fonts.gstatic.com maxcdn.bootstrapcdn.com".
so maybe it's not my mantis
can you help
thanks