-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Merge pull request #37 from marekdedic/header-quoting
Always quoting header values
- Loading branch information
Showing
37 changed files
with
44 additions
and
40 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header add X-Content-Type-Options nosniff | ||
Header add X-Content-Type-Options "nosniff" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header always set X-Content-Type-Options nosniff | ||
Header always set X-Content-Type-Options "nosniff" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header append X-Content-Type-Options nosniff | ||
Header append X-Content-Type-Options "nosniff" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header merge X-Content-Type-Options nosniff | ||
Header merge X-Content-Type-Options "nosniff" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Content-Type-Options nosniff env=MY_VAR | ||
Header set X-Content-Type-Options "nosniff" env=MY_VAR |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Content-Type-Options nosniff env=!MY_VAR | ||
Header set X-Content-Type-Options "nosniff" env=!MY_VAR |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Content-Type-Options nosniff "expr=%{md5:foo}" | ||
Header set X-Content-Type-Options "nosniff" "expr=%{md5:foo}" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Content-Type-Options nosniff | ||
Header set X-Content-Type-Options "nosniff" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header setifempty X-Content-Type-Options nosniff | ||
Header setifempty X-Content-Type-Options "nosniff" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/all-combination-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy accelerometer=*, ambient-light-sensor=(src), attribution-reporting=(self src), autoplay=(self), battery=(self "https://site1.example"), bluetooth=(src), camera=*, compute-pressure=(src "https://site1.example" "http://site2.example"), display-capture=(self src "https://site1.example" "http://site2.example" "https://site3.example"), document-domain=(src), encrypted-media=(self src), execution-while-not-rendered=(src), execution-while-out-of-viewport=(self), fullscreen=(src), gamepad=(src), geolocation=(self), gyroscope=(self), hid=(self "https://site1.example"), identity-credentials-get=*, idle-detection=*, local-fonts=*, magnetometer=(self src "https://site1.example" "http://site2.example" "https://site3.example"), microphone=(self src), midi=(self src), otp-credentials=(src), payment=(self src "https://site1.example" "http://site2.example" "https://site3.example"), picture-in-picture=(self), publickey-credentials-create=(), publickey-credentials-get=(src), screen-wake-lock=*, serial=*, speaker-selection=(src "https://site1.example" "http://site2.example"), storage-access=(src), usb=*, web-share=(), window-management=*, xr-spatial-tracking=() | ||
Header set Permissions-Policy "accelerometer=*, ambient-light-sensor=(src), attribution-reporting=(self src), autoplay=(self), battery=(self \"https://site1.example\"), bluetooth=(src), camera=*, compute-pressure=(src \"https://site1.example\" \"http://site2.example\"), display-capture=(self src \"https://site1.example\" \"http://site2.example\" \"https://site3.example\"), document-domain=(src), encrypted-media=(self src), execution-while-not-rendered=(src), execution-while-out-of-viewport=(self), fullscreen=(src), gamepad=(src), geolocation=(self), gyroscope=(self), hid=(self \"https://site1.example\"), identity-credentials-get=*, idle-detection=*, local-fonts=*, magnetometer=(self src \"https://site1.example\" \"http://site2.example\" \"https://site3.example\"), microphone=(self src), midi=(self src), otp-credentials=(src), payment=(self src \"https://site1.example\" \"http://site2.example\" \"https://site3.example\"), picture-in-picture=(self), publickey-credentials-create=(), publickey-credentials-get=(src), screen-wake-lock=*, serial=*, speaker-selection=(src \"https://site1.example\" \"http://site2.example\"), storage-access=(src), usb=*, web-share=(), window-management=*, xr-spatial-tracking=()" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/fullscreen-all-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy fullscreen=* | ||
Header set Permissions-Policy "fullscreen=*" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/fullscreen-combination-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy fullscreen=(self src "https://site1.example" "http://site2.example" "https://site3.example") | ||
Header set Permissions-Policy "fullscreen=(self src \"https://site1.example\" \"http://site2.example\" \"https://site3.example\")" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/fullscreen-empty-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy fullscreen=() | ||
Header set Permissions-Policy "fullscreen=()" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/fullscreen-list-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy fullscreen=("https://site1.example" "http://site2.example" "https://site3.example") | ||
Header set Permissions-Policy "fullscreen=(\"https://site1.example\" \"http://site2.example\" \"https://site3.example\")" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/fullscreen-self-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy fullscreen=(self) | ||
Header set Permissions-Policy "fullscreen=(self)" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Permissions-Policy/fullscreen-src-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Permissions-Policy fullscreen=(src) | ||
Header set Permissions-Policy "fullscreen=(src)" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/no-referrer-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy no-referrer | ||
Header set Referrer-Policy "no-referrer" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/no-referrer-when-downgrade-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy no-referrer-when-downgrade | ||
Header set Referrer-Policy "no-referrer-when-downgrade" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/origin-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy origin | ||
Header set Referrer-Policy "origin" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/origin-when-cross-origin-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy origin-when-cross-origin | ||
Header set Referrer-Policy "origin-when-cross-origin" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/same-origin-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy same-origin | ||
Header set Referrer-Policy "same-origin" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/strict-origin-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy strict-origin | ||
Header set Referrer-Policy "strict-origin" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/strict-origin-when-cross-origin-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy strict-origin-when-cross-origin | ||
Header set Referrer-Policy "strict-origin-when-cross-origin" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Referrer-Policy/unsafe-url-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Referrer-Policy unsafe-url | ||
Header set Referrer-Policy "unsafe-url" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Strict-Transport-Security/maxAge-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Strict-Transport-Security max-age=42 | ||
Header set Strict-Transport-Security "max-age=42" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Strict-Transport-Security/preload-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Strict-Transport-Security max-age=31536000; includeSubDomains; preload | ||
Header set Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/Strict-Transport-Security/subdomains-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set Strict-Transport-Security max-age=42; includeSubDomains | ||
Header set Strict-Transport-Security "max-age=42; includeSubDomains" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/X-Content-Type-Options/nosniff-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Content-Type-Options nosniff | ||
Header set X-Content-Type-Options "nosniff" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Frame-Options DENY | ||
Header set X-Frame-Options "DENY" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/X-Frame-Options/sameorigin-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Frame-Options SAMEORIGIN | ||
Header set X-Frame-Options "SAMEORIGIN" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/X-Xss-Protection/block-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Xss-Protection 1; mode=block | ||
Header set X-Xss-Protection "1; mode=block" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/X-Xss-Protection/disabled-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Xss-Protection 0 | ||
Header set X-Xss-Protection "0" |
2 changes: 1 addition & 1 deletion
2
__tests__/specs/Header/headers/X-Xss-Protection/sanitize-output.txt
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1 +1 @@ | ||
Header set X-Xss-Protection 1 | ||
Header set X-Xss-Protection "1" |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters