Add Referrer-Policy
This commit is contained in:
parent
3f68862fa3
commit
2476d055aa
1 changed files with 3 additions and 0 deletions
|
@ -11,6 +11,7 @@ server {
|
|||
set $CSP "${CSP}form-action 'none';";
|
||||
|
||||
add_header Content-Security-Policy $CSP always;
|
||||
add_header Referrer-Policy "strict-origin-when-cross-origin" always;
|
||||
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always;
|
||||
add_header X-Content-Type-Options "nosniff" always;
|
||||
add_header X-Frame-Options "SAMEORIGIN" always;
|
||||
|
@ -34,6 +35,7 @@ server {
|
|||
set $CSP "${CSP}form-action 'none';";
|
||||
|
||||
add_header Content-Security-Policy $CSP always;
|
||||
add_header Referrer-Policy "strict-origin-when-cross-origin" always;
|
||||
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always;
|
||||
add_header X-Content-Type-Options "nosniff" always;
|
||||
add_header X-Frame-Options "SAMEORIGIN" always;
|
||||
|
@ -67,6 +69,7 @@ server {
|
|||
set $CSP "${CSP}form-action 'none';";
|
||||
|
||||
add_header Content-Security-Policy $CSP always;
|
||||
add_header Referrer-Policy "strict-origin-when-cross-origin" always;
|
||||
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains" always;
|
||||
add_header X-Content-Type-Options "nosniff" always;
|
||||
add_header X-Frame-Options "SAMEORIGIN" always;
|
||||
|
|
Reference in a new issue