【发布时间】:2020-04-09 12:06:34
【问题描述】:
将 Jenkins 升级到 v2.222.1 后,我们收到以下警告消息
The default Content-Security-Policy is currently overridden using the hudson.model.DirectoryBrowserSupport.CSP system property, which is a potential security issue when browsing untrusted files. As an alternative, you can set up a Resource Root URL that Jenkins will use to serve some static files without adding Content-Security-Policy headers.
我们不希望有单独的来源来提供静态内容,同时必须解决此警告,很高兴提供您的建议..
【问题讨论】:
标签: jenkins jenkins-pipeline jenkins-plugins jenkins-groovy jenkins-cli