mirror of
https://github.com/YunoHost-Apps/hydrogen_ynh.git
synced 2024-09-03 19:26:17 +02:00
Update nginx.conf
This commit is contained in:
parent
d463f7a1b9
commit
4c595e4621
1 changed files with 10 additions and 4 deletions
|
@ -3,10 +3,16 @@ location __PATH__/ {
|
|||
|
||||
alias __FINALPATH__/;
|
||||
|
||||
more_set_headers "X-Frame-Options: SAMEORIGIN";
|
||||
more_set_headers "X-Content-Type-Options: nosniff";
|
||||
more_set_headers "X-XSS-Protection: 1; mode=block";
|
||||
more_set_headers "Content-Security-Policy: frame-ancestors 'none'";
|
||||
more_set_headers "Content-Security-Policy: default-src 'self' 'unsafe-eval' data:; style-src 'self' 'unsafe-inline'";
|
||||
|
||||
|
||||
more_set_headers "Strict-Transport-Security: max-age=31536000; includeSubDomains; always";
|
||||
more_set_headers "X-XSS-Protection: 1; mode=block";
|
||||
more_set_headers "X-Content-Type-Options: nosniff";
|
||||
more_set_headers "Access-Control-Allow-Origin: *";
|
||||
#more_set_headers "X-Frame-Options: 'SAMEORIGIN'";
|
||||
more_set_headers "Cross-Origin-Resource-Policy: cross-origin";
|
||||
more_set_headers "Cross-Origin-Embedder-Policy: require-corp";
|
||||
|
||||
index index.html;
|
||||
}
|
||||
|
|
Loading…
Reference in a new issue