Quantcast
Channel: Zimbra Forums
Viewing all articles
Browse latest Browse all 1397

Administrators • Re: Globally protecting Zimbra against XSS with Content-Security-Policy

$
0
0
Wow; great work!

This should be pretty easy to integrate into the built-in nginx config. I'll see if I can write a howto on that when I'm caught up on real work.

This is the sort of stuff that we would be gladly contributing if Synacor would bother to have a community process. I'm invested in Zimbra continuing to be useful and secure (for my personal/friends/family email), have put dozens of hours into diagnosing and fixing problems, and wish they would be better open source community members.

Statistics: Posted by jered — Sat Jun 21, 2025 1:26 am



Viewing all articles
Browse latest Browse all 1397