From a185c1e3a687ff8879e5759e2023dd5102467b70 Mon Sep 17 00:00:00 2001 From: mntmn <lukas@mntmn.com> Date: Mon, 11 May 2020 18:28:48 +0200 Subject: [PATCH] helmet: disable protections for now --- spacedeck.js | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/spacedeck.js b/spacedeck.js index 430cd03..d6505b0 100644 --- a/spacedeck.js +++ b/spacedeck.js @@ -71,18 +71,18 @@ app.use(bodyParser.urlencoded({ })); app.use(cookieParser()); -app.use(helmet.frameguard()) -app.use(helmet.xssFilter()) -app.use(helmet.hsts({ +//app.use(helmet.frameguard()) +//app.use(helmet.xssFilter()) +/*app.use(helmet.hsts({ maxAge: 7776000000, includeSubDomains: true -})) +}))*/ app.disable('x-powered-by'); -app.use(helmet.noSniff()) +//app.use(helmet.noSniff()) //app.use(require("./middlewares/error_helpers")); -app.use(require("./middlewares/session")); //app.use(require("./middlewares/cors")); +app.use(require("./middlewares/session")); app.use(require("./middlewares/i18n")); app.use("/api", require("./middlewares/api_helpers")); app.use('/api/spaces/:id', require("./middlewares/space_helpers")); -- GitLab