diff --git a/conf/nginx.conf b/conf/nginx.conf index cad7885..858d281 100644 --- a/conf/nginx.conf +++ b/conf/nginx.conf @@ -5,13 +5,11 @@ location __PATH__/ { index index.html; - more_set_headers "Referrer-Policy: 'strict-origin' always"; - more_set_headers "X-Content-Type-Options: 'nosniff' always"; - more_set_headers "X-Frame-Options: 'SAMEORIGIN' always"; + more_set_headers "X-Frame-Options: SAMEORIGIN"; + more_set_headers "X-Content-Type-Options: nosniff"; + more_set_headers "X-XSS-Protection: '1; mode=block'"; + more_set_headers "Content-Security-Policy: frame-ancestors 'self'"; # Include SSOWAT user panel. include conf.d/yunohost_panel.conf.inc; } - - -