server/nginx/always

This commit is contained in:
Marc Beninca 2019-08-07 16:08:38 +02:00
parent 5dcf03ebb2
commit 39a4c88a05

View file

@ -390,9 +390,9 @@ Security
listen [::]:443 ssl http2; listen [::]:443 ssl http2;
add_header Content-Security-Policy "default-src 'self'"; add_header Content-Security-Policy "default-src 'self'";
add_header Strict-Transport-Security "max-age=31557600; includeSubDomains; preload" always; add_header Strict-Transport-Security "max-age=31557600; includeSubDomains; preload" always;
add_header X-Content-Type-Options "nosniff"; add_header X-Content-Type-Options "nosniff" always;
add_header X-Frame-Options "SAMEORIGIN"; add_header X-Frame-Options "SAMEORIGIN" always;
add_header X-XSS-Protection "1; mode=block"; add_header X-XSS-Protection "1; mode=block" always;
Sites Sites
^^^^^ ^^^^^