diff options
Diffstat (limited to 'playbooks.d/webserver-nginx')
-rw-r--r-- | playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.git | 6 |
1 files changed, 5 insertions, 1 deletions
diff --git a/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.git b/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.git index 65d1bb9..650b55c 100644 --- a/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.git +++ b/playbooks.d/webserver-nginx/share/sites.d/https/nl.tyil.git @@ -8,9 +8,13 @@ server { ssl_certificate_key /etc/letsencrypt/live/git.tyil.nl/privkey.pem; include /etc/nginx/snippets.d/certbot.conf; - include /etc/nginx/snippets.d/headers.conf; include /etc/nginx/snippets.d/ssl.conf; + add_header Content-Security-Policy "default-src 'self'; style-src 'self' 'unsafe-inline'" always; + add_header Referrer-Policy "strict-origin-when-cross-origin" always; + add_header X-Content-Type-Options "nosniff" always; + add_header X-Frame-Options "SAMEORIGIN" always; + root /usr/share/webapps/cgit/1.2.3-r100/htdocs; location / { |