diff options
| author | schererleander <leander@schererleander.de> | 2025-05-30 06:25:28 +0200 |
|---|---|---|
| committer | schererleander <leander@schererleander.de> | 2025-05-30 06:25:28 +0200 |
| commit | 00256c5ca303701dcb797019b46e6f2083c5d1c2 (patch) | |
| tree | 38fb52d9911b9696a1b6bde1adc0ad7f4cb6a237 | |
| parent | 27fb01cc1a58e245793b10d78a0c114781d4ba16 (diff) | |
hardened nginx
| -rw-r--r-- | hosts/vps/configuration.nix | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/hosts/vps/configuration.nix b/hosts/vps/configuration.nix index d688cf9..ee6cf70 100644 --- a/hosts/vps/configuration.nix +++ b/hosts/vps/configuration.nix @@ -57,7 +57,7 @@ } add_header Strict-Transport-Security $hsts_header; add_header Content-Security-Policy "script-src 'self'; object-src 'none'; base-uri 'none';" always; - add_header 'Referrer-Policy' same-origin always; + add_header 'Referrer-Policy' 'same-origin' always; add_header X-Frame-Options DENY; add_header X-Content-Type-Options nosniff always; ''; |
