• Resolved Gabriel

    (@mrgkanev)


    Hi,

    I have a video which is playing in the background. For some reason now it is not showing and I receive these errors. When the CSP Header Contents is “upgrade-insecure-requests;” I receive the error:

    [Error] The Content Security Policy directive 'upgrade-insecure-requests' is ignored when delivered in a report-only policy.
    [Error] The Content Security Policy 'upgrade-insecure-requests;' was delivered in report-only mode, but does not specify a 'report-to'; the policy will have no effect. Please either add a 'report-to' directive, or deliver the policy via the 'Content-Security-Policy' header.

    but when it is on “object-src ‘none’; upgrade-insecure-requests;” i receive the error :

    [Error] The Content Security Policy directive 'upgrade-insecure-requests' is ignored when delivered in a report-only policy.
    [Error] The Content Security Policy 'object-src 'none'; upgrade-insecure-requests;' was delivered in report-only mode, but does not specify a 'report-to'; the policy will have no effect. Please either add a 'report-to' directive, or deliver the policy via the 'Content-Security-Policy' header.

    I have enabled max age (63072000), Subdomains, Preload, Disable (X-Content-Type-Options).?Disable (X-Frame-Options). We are behind CF.

Viewing 7 replies - 1 through 7 (of 7 total)
  • Plugin Author Andrea Ferro

    (@unicorn03)

    Hi @mrgkanev,

    thanks for your topic the warning in the DOM does not result in any problems for the website or performance but with the new version coming out soon under final testing it will delete some warnings in the DOM of chrome.

    For your request I ask if you have tested by removing the CSP from the custom settings of the plugin? settings > Headers Security Advanced & HSTS WP

    Thread Starter Gabriel

    (@mrgkanev)

    Hi @unicorn03 ,

    Do you mean to remove everything from “CSP Header Contents”? – yes i have tested it. The only diffirence that it made is that the errors are gone, but the video still dosn’t work.

    Plugin Author Andrea Ferro

    (@unicorn03)

    Hi @mrgkanev,

    don’t worry I am here specifically to help you with the best solution. I ask are the videos you embed vimeo, youtube or other?

    in the CSP policies you have to specify if the video is from which source I will give you examples and help you very quickly, once you understand and if you can share me the website

    Thread Starter Gabriel

    (@mrgkanev)

    Hi @unicorn03 ,

    Thanks for your help. I am adding a temporary redirect to the website where the problem is. – it is an embed video on server uploaded.

    Plugin Author Andrea Ferro

    (@unicorn03)

    Hello @mrgkanev,

    I have verified the link to make a verification and help you in a full response and assistance.

    If I browse your site on chrome I see a video of a product that takes it in different angles (the video is shown), I ask if this is correct?

    I have also done a test in private mode with browsers like duckduck go and then used safari as well and these block the video but seem not inherent to the plugin.

    I ask you if you deactivate the plugin for a second can you tell me if you still see the video blocked or write to me so I check what requests are changed?

    Thread Starter Gabriel

    (@mrgkanev)

    Hi @unicorn03 ,

    A big thing I forgot to mention. (sorry) The problem is only on Safari. The reason I thought the problem was with the plugin, is that the video stopped playing after the plugin update.

    After deactivation there isn’t a diffirence, sorry for waiting your time.

    Plugin Author Andrea Ferro

    (@unicorn03)

    Hello @mrgkanev,

    don’t worry I usually do difersi tests on different browsers to avoid possible issues. You did well to open the topic because in case it was the plugin I would have given you the correct solution.

    But i would like to help you i share you an article of the common issue hope i helped you https://www.macworld.com/article/230271/how-to-stop-autoplay-videos-in-safari-11.html

Viewing 7 replies - 1 through 7 (of 7 total)
  • You must be logged in to reply to this topic.