Nginx-Configurations/snippets/global/common-headers.conf

8 lines
No EOL
326 B
Text

# Set a common group of headers
add_header X-Content-Type-Options nosniff;
add_header X-XSS-Protection "1; mode=block";
add_header X-Robots-Tag none;
add_header Content-Security-Policy "frame-ancestors 'self'";
add_header X-Frame-Options DENY;
add_header Referrer-Policy same-origin;
add_header Access-Control-Allow-Origin *;