Chromium Code Reviews| Index: content/test/data/frame-src-self-and-b.html |
| diff --git a/content/test/data/frame-src-self-and-b.html b/content/test/data/frame-src-self-and-b.html |
| new file mode 100644 |
| index 0000000000000000000000000000000000000000..db4dbddfcec9bc9721039667a78f38846aabadcf |
| --- /dev/null |
| +++ b/content/test/data/frame-src-self-and-b.html |
| @@ -0,0 +1,12 @@ |
| +<!DOCTYPE html> |
| +<html> |
| +<head> |
| +<title>This page should only allow subframes from the same origin or b.com</title> |
| +</head> |
| +<body> |
| +This page should only allow subframes from the same origin or from b.com, |
| +because its CSP headers specify frame-src 'self' and 'b.com'. |
| +<iframe src="/cross-site/b.com/title2.html"></iframe> |
| +</body> |
| +</html> |
| + |