diff --git a/.htaccess b/.htaccess index bb030c6acc..db1fa99755 100644 --- a/.htaccess +++ b/.htaccess @@ -14,9 +14,12 @@ Header set X-Frame-Options "SAMEORIGIN" SetEnv modHeadersAvailable true - # Add CSP header if not set, used for static resources - Header append Content-Security-Policy "" - Header edit Content-Security-Policy "^$" "default-src 'none'; style-src 'self' 'unsafe-inline'; script-src 'self'" + + = 2.4.7> + # Add CSP header if not set, used for static resources + Header setifempty Content-Security-Policy "default-src 'none'; style-src 'self' 'unsafe-inline'; script-src 'self'" + + # Add cache control for CSS and JS files