diff options
Diffstat (limited to 'playbooks.d/webserver-nginx/share/snippets.d/headers.conf')
-rw-r--r-- | playbooks.d/webserver-nginx/share/snippets.d/headers.conf | 4 |
1 files changed, 4 insertions, 0 deletions
diff --git a/playbooks.d/webserver-nginx/share/snippets.d/headers.conf b/playbooks.d/webserver-nginx/share/snippets.d/headers.conf new file mode 100644 index 0000000..c277e3d --- /dev/null +++ b/playbooks.d/webserver-nginx/share/snippets.d/headers.conf @@ -0,0 +1,4 @@ +add_header Content-Security-Policy "default-src 'self'" always; +add_header Referrer-Policy "strict-origin-when-cross-origin" always; +add_header X-Content-Type-Options "nosniff" always; +add_header X-Frame-Options "SAMEORIGIN" always; |