forked from bitlair/ansible
Add HSTS headers to all web services
This commit is contained in:
parent
5ae55c6c5b
commit
8a8216d78e
6 changed files with 11 additions and 7 deletions
|
@ -12,6 +12,10 @@ server {
|
|||
ssl_certificate_key "/var/lib/dehydrated/certs/{{ etherpad_domain }}/privkey.pem";
|
||||
{% endif %}
|
||||
|
||||
add_header Strict-Transport-Security "max-age=63072000; includeSubDomains; preload";
|
||||
add_header X-Frame-Options DENY;
|
||||
add_header X-Content-Type-Options nosniff;
|
||||
|
||||
location / {
|
||||
proxy_pass http://127.0.0.1:9001/;
|
||||
include proxy_params;
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue