nginx_site: Add security headers for movies.foo.sh
This commit is contained in:
parent
583b106d39
commit
e57cd06891
1 changed files with 5 additions and 0 deletions
5
roles/nginx_site/templates/movies.foo.sh.conf.j2
Normal file
5
roles/nginx_site/templates/movies.foo.sh.conf.j2
Normal file
|
@ -0,0 +1,5 @@
|
|||
add_header Content-Security-Policy "default-src 'self'; font-src 'self' https://fonts.gstatic.com; img-src 'self' data:; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com";
|
||||
add_header Referrer-Policy "no-referrer";
|
||||
add_header X-Content-Type-Options "nosniff";
|
||||
add_header X-XSS-Protection "1; mode=block";
|
||||
|
Loading…
Add table
Reference in a new issue