Index: chrome/browser/ui/webui/chromeos/login/oobe_ui.cc |
diff --git a/chrome/browser/ui/webui/chromeos/login/oobe_ui.cc b/chrome/browser/ui/webui/chromeos/login/oobe_ui.cc |
index ee8d33a24366a283390e80dd4f577df7929f399c..0ab0ecb1ba8cea10b3d2067832e113f6701e49e2 100644 |
--- a/chrome/browser/ui/webui/chromeos/login/oobe_ui.cc |
+++ b/chrome/browser/ui/webui/chromeos/login/oobe_ui.cc |
@@ -149,7 +149,8 @@ content::WebUIDataSource* CreateOobeUIDataSource( |
base::StringPrintf( |
"child-src chrome://terms/ %s/;", |
extensions::kGaiaAuthExtensionOrigin)); |
- source->OverrideContentSecurityPolicyObjectSrc("object-src *;"); |
+ source->OverrideContentSecurityPolicyObjectSrc( |
+ "object-src chrome:;"); |
source->AddResourcePath("gaia_auth_host.js", |
StartupUtils::IsWebviewSigninEnabled() |
? IDR_GAIA_AUTH_AUTHENTICATOR_JS |