diff --git a/conf/nginx.conf b/conf/nginx.conf index 2904a6a..cad7885 100644 --- a/conf/nginx.conf +++ b/conf/nginx.conf @@ -5,11 +5,13 @@ location __PATH__/ { index index.html; - more_set_headers "X-Frame-Options: SAMEORIGIN"; - more_clear_headers "X-Content-Type-Options"; - more_set_headers "X-XSS-Protection: '1; mode=block'"; - more_set_headers "Content-Security-Policy: frame-ancestors 'self'"; + more_set_headers "Referrer-Policy: 'strict-origin' always"; + more_set_headers "X-Content-Type-Options: 'nosniff' always"; + more_set_headers "X-Frame-Options: 'SAMEORIGIN' always"; # Include SSOWAT user panel. include conf.d/yunohost_panel.conf.inc; } + + +