diff --git a/src/hub/settings/base.py b/src/hub/settings/base.py index 729bc10d6f11122ddc041409139603a31ffc91e8..b730b22cd75922938c47edbe7f178ace5e2ab411 100644 --- a/src/hub/settings/base.py +++ b/src/hub/settings/base.py @@ -107,8 +107,8 @@ env = environ.FileAwareEnv( # TODO: Remove unsafe-inline from CSP_STYLE_SRC after style extraction is done CSP_STYLE_SRC=(list, ["'self'", "'unsafe-inline'"]), # c3volc.de is used for the video player - CSP_IMG_SRC=(list, ["'self'", 'data:', 'http://*.c3voc.de/']), - CSP_CONNECT_SRC=(list, ["'self'", 'http://*.c3voc.de/']), + CSP_IMG_SRC=(list, ["'self'", 'data:', 'http://*.c3voc.de/', 'https://media.ccc.de/']), + CSP_CONNECT_SRC=(list, ["'self'", 'http://*.c3voc.de/', 'https://media.ccc.de/']), CSP_FONT_SRC=(list, ["'self'"]), CSP_OBJECT_SRC=(list, ["'none'"]), CSP_FRAME_SRC=(list, ["'none'"]),