CSP is a technique by which website administrator provides lists of trusted sources to the browser from which content like JavaScript, CSS, HTML Frames, Fonts, Images and embeddable objects (Java applets, ActiveX, Audio and Video) can be loaded into a pag
A primary goal of CSP is to mitigate and report XSS attacks. XSS attacks exploit the browser's trust of the content received from the server. Malicious scripts are executed by the victim's browser because the browser trusts the source of the conte
If you enable this setting, the administrator can create a list of approved ActiveX Install sites specified by host URL. If you disable or do not configure this policy setting, ActiveX controls prompt the user for administrative credentials before install
Post a Comment:
Showing 0 Comments: