0 Replies Latest reply on Dec 8, 2017 4:07 AM by silen67

    External files does not work anymore

    silen67 Level 1


      I am a little destabilized, I have an application that works perfectly for 15 days and there suddenly without reason external files are no longer called, example: or Ajax (phpfile called) or Script with src on https:// mysite/file.js ...


      I did not change or touch anything I do not understand I made tons of tests this morning and nothing to do ...


      Here me CSP (always worked)


      <meta http-equiv="Content-Security-Policy" content="default-src gap: file://* *; style-src * 'unsafe-inline'; script-src * 'unsafe-inline' 'unsafe-eval'; img-src * data: 'unsafe-inline'; connect-src * 'unsafe-inline'; frame-src *;" />


      I've got whitelist plugin


      <plugin name="cordova-plugin-whitelist" source="npm" />


      And all allow access


      <access origin="*" />
      <access launch-external="yes" origin="tel:*" />
      <allow-navigation href="http://*"/>
      <allow-navigation href="https://*"/>
      <allow-navigation href="http://*/*"/>
      <allow-navigation href="https://*/*"/>
      <allow-navigation href="data:*"/>
      <allow-navigation href="about:*"/>
      <allow-navigation href="tel:*"/>
      <allow-navigation href="gap:*" />
      <allow-intent href="http://*/*" />
      <allow-intent href="https://*/*" />
      <allow-intent href="tel:*" />
      <allow-intent href="sms:*" />
      <allow-intent href="mailto:*" />
      <allow-intent href="geo:*" />


      And this on my php file


      header('Access-Control-Allow-Origin: *');
      header('Access-Control-Allow-Credentials: true');
      header('Access-Control-Allow-Methods: GET');
      header('Content-Type: application/json');


      Can someone help me? Thank you so much.

      For information if i make external file in local, everything works, but i need them to be external.