HTML Programming
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsWeb DesignHTML Programming
Receive the tools necessary to be the rock star of your field. Our 12-month program teaches you the evolving world of multi-channel marketing as well as the complex issues and opportunities found in the industry.

ASP Free and Iron Speed Designer are giving away $5,500+ in FREE licenses. Iron Speed's RAD CASE toolset can save up to 80% of your coding time. One free license per week, one perpetual license per month!
Download and Activate to enter!

Web development can be a daunting task, even for specialists. There is a lot of information to absorb and a lot of technologies to learn in order to manage a superior website. When trying to learn the ropes, developers need a reliable source to introduce new ideas that can be easily implemented. When working on large projects, even web veterans may run into a technology or an aspect of a technology that they are unfamiliar with.

Learn More!


Download to Enter
| Contest Rules

Tutorials | Forums

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old January 19th, 2012, 01:04 PM
michael887 michael887 is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Jan 2012
Posts: 1 michael887 User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 14 m 35 sec
Reputation Power: 0
How to show external page in iframe sans Javascript in Firefox?

I'm trying to load an external site in an iframe for my Firefox visitors. The external page is loaded with javascript, and I would like this to be stripped out. For Chrome, the HTML5 sandbox="" works perfectly, and with IE the security="restricted" does the job just fine. With Firefox, I'm struggling.

I've been using the CSP policy directive as described here, but I can't seem to get the right configuration. The following line will load the page, but the javascript on the external site still loads.
PHP Code:
 header("X-Content-Security-Policy: allow 'self'; object-src 'self'; script-src 'self'; frame-src *.externalsite.com; img-src 'self'"); 


I've tried dozens of other configurations and seem to have hit a brick wall. Will this work with the CSP directive? Should I look somewhere else to allow an external site to load in an iframe sans javascript in Firefox? Is this even possible in Firefox?

Reply With Quote
  #2  
Old January 19th, 2012, 01:27 PM
Kravvitz's Avatar
Kravvitz Kravvitz is offline
CSS & JS/DOM Adept
Dev Shed God 29th Plane (19000 - 19499 posts)
 
Join Date: Jul 2004
Location: USA
Posts: 19,134 Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level)Kravvitz User rank is General 41st Grade (Above 100000 Reputation Level) 
Time spent in forums: 5 Months 1 Week 6 Days 2 h 38 m 32 sec
Reputation Power: 3755
Welcome to DevShed Forums, michael887.

I don't know the answer to that, but have you read this page in Mozilla's documentation?

What I might do is write a custom proxy script (in PHP, using cURL) to retrieve the page from the external domain and strip the <script> elements from it before displaying it in the iframe.
__________________
Spreading knowledge, one newbie at a time. I'm available for hire at Dynamic Site Solutions.

Check out my blog. | Learn CSS. | PHP includes | X/HTML Validator | CSS validator | Common CSS Mistakes | Common JS Mistakes

Remember people spend most of their time on other people's sites (so don't violate web design conventions).

Reply With Quote
Reply

Viewing: Dev Shed ForumsWeb DesignHTML Programming > How to show external page in iframe sans Javascript in Firefox?


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump

Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 


Powered by: vBulletin Version 3.0.5
Copyright ©2000 - 2012, Jelsoft Enterprises Ltd.

© 2003-2012 by Developer Shed. All rights reserved. DS Cluster 2 - Follow our Sitemap