grafana/docs/sources/setup-grafana/configure-security
Kristian Bremberg 35407142d0
Feature: Trusted Types support (#64975)
* Draft: Feature: Trusted Types support

* remove trusted-types package

* Create policy before jQuery and Angular is loaded and add feature flag

* Add trustedTypePolicies

* Sanitize scriptURL

* Add TT meta tag for test env

* Move trusted types into core

* Add DOMParser support for TrustedHTML

* Seperate RSS sanitization and add better TrustedHTML support

* Get test CSP header from config

* Remove dompurify dep from core

* Add documentation for trusted types

* Apply suggestions from code review

Co-authored-by: Kristian Bremberg <114284895+KristianGrafana@users.noreply.github.com>

* Add comment about Github discussion thread and things breaking

* Remove changes from News panel

* Remove TT feature toggle

* Expose TT and CSPReportOnly to frontend

* Log errors in console when CSP report only is enabled

* Log error for reporting and remove test mode

* Only insert CSP header in HTML for dev env

* Update docs

---------

Co-authored-by: Tobias Skarhed <tobias.skarhed@gmail.com>
Co-authored-by: Tobias Skarhed <1438972+tskarhed@users.noreply.github.com>
2023-04-27 18:20:37 +02:00
..
configure-authentication SAML UI: Fix permissions for fixed:authentication.config:writer role (#67290) 2023-04-27 15:46:47 +02:00
configure-database-encryption Docs: Update references of grafana-cli to grafana cli and grafana-server to grafana server. (#66981) 2023-04-26 20:18:03 +02:00
configure-security-hardening Feature: Trusted Types support (#64975) 2023-04-27 18:20:37 +02:00
_index.md Use relative aliases for all non-current Grafana aliases (#60062) 2022-12-09 12:36:04 -04:00
audit-grafana.md Docs: Add 'tenant_id' for Loki clients (Auditing & Analytics) (#63098) 2023-03-27 22:44:16 +02:00
configure-request-security.md Increase coverage of 'Grafana Cloud' labels (#64646) 2023-03-14 15:49:22 +00:00
configure-team-sync.md [docs] remove auth/saml alias from team sync page (#66796) 2023-04-19 09:39:03 -04:00
export-logs.md Docs: Add 'tenant_id' for Loki clients (Auditing & Analytics) (#63098) 2023-03-27 22:44:16 +02:00