Closed emaddoma closed 8 years ago
Looks like you need to allow content from Cloudinary in your security policy. I don't remember exactly how to do that but I'm sure you can find out how quickly on their docs.
Marcelo Reyna 702 769 0639
On Mar 6, 2016, 10:53 AM -0800, Erik Madsennotifications@github.com, wrote:
throws this error: Refused to load the image 'http://res.cloudinary.com/hud9ala09/image/upload/aslngmemx51tli3uof1c' because it violates the following Content Security Policy directive: "img-src data: 'self' localhost:*http://fonts.googleapis.comhttps://fonts.googleapis.comhttp://fonts.gstatic.comhttps://fonts.gstatic.comhttp://graph.facebook.comhttps://graph.facebook.comhttp://fbcdn-profile-a.akamaihd.nethttps://fbcdn-profile-a.akamaihd.nethttp://secure.gravatar.comhttps ://secure.gravatar.com(https://secure.gravatar.com)http://i0.wp.comhttps://i0.wp.comhttp://.facebook.com https://.facebook.com http://.fbcdn.net https://.fbcdn.nethttp://connect.facebook.nethttps://connect.facebook.nethttp://.googleusercontent.com https://.googleusercontent.com http://.stripe.com https://.stripe.comhttp://enginex.kadira.iohttps://enginex.kadira.iohttp://www.google-analytics.comhttps://www.google-analytics.comhttp://.doubleclick.net https://.doubleclick.nethttp://cdn.mxpnl.comhttps://cdn.mxpnl.comhttp://cdn.segment.co m(http://cdn.segment.com)https://cdn.segment.comhttp://www.paypal.comhttps://www.paypal.comhttp://www.paypalobjects.comhttps://www.sandbox.paypal.comhttps://www.paypalobjects.comhttps://tracking.qa.paypal.com".
— Reply to this email directly orview it on GitHub(https://github.com/Lepozepo/cloudinary/issues/75).
Thanks. I added BrowserPolicy.content.allowImageOrigin("res.cloudinary.com"); to policy.js and it's working now.
throws this error: "Refused to load the image 'http://res.cloudinary.com/hud9ala09/image/upload/aslngmemx51tli3uof1c' because it violates the following Content Security Policy directive: "img-src data: 'self' localhost:* http://fonts.googleapis.com https://fonts.googleapis.com http://fonts.gstatic.com https://fonts.gstatic.com http://graph.facebook.com https://graph.facebook.com http://fbcdn-profile-a.akamaihd.net https://fbcdn-profile-a.akamaihd.net http://secure.gravatar.com https://secure.gravatar.com http://i0.wp.com https://i0.wp.com http://_.facebook.com https://_.facebook.com http://_.fbcdn.net https://_.fbcdn.net http://connect.facebook.net https://connect.facebook.net http://_.googleusercontent.com https://_.googleusercontent.com http://_.stripe.com https://_.stripe.com http://enginex.kadira.io https://enginex.kadira.io http://www.google-analytics.com https://www.google-analytics.com http://_.doubleclick.net https://_.doubleclick.net http://cdn.mxpnl.com https://cdn.mxpnl.com http://cdn.segment.com https://cdn.segment.com http://www.paypal.com https://www.paypal.com http://www.paypalobjects.com https://www.sandbox.paypal.com https://www.paypalobjects.com https://tracking.qa.paypal.com"."