Commit 953e151c authored by Andri Steiner's avatar Andri Steiner
Browse files

local security related configuration #1

parent 56cb6bfb
# local nginx configuration for default
# [INFO]
# global security configuration disabled
# see services/ for details
# deny access to hidden files
location ~ (?!^\/\.well-known)\/\. {
satisfy all;
deny all;
# security headers
# [INFO]
add_header X-Frame-Options "SAMEORIGIN" always;
add_header X-Content-Type-Options "nosniff" always;
add_header X-XSS-Protection "1; mode=block" always;
add_header Referrer-Policy "strict-origin-when-cross-origin" always;
