Add configuration file "Nginx - Include - Header - Security - Content-Security-Policy"
This configuration file allows non-duplicate inclusion of CSP in server configuration files without requiring it as part of the base security headers.
This commit is contained in:
parent
2fff5aabc1
commit
4db3c3f2d1
10
nginx/include/header-security-csp.conf
Normal file
10
nginx/include/header-security-csp.conf
Normal file
@ -0,0 +1,10 @@
|
||||
# Inferencium - xa000-1
|
||||
# Nginx - Configuration - Include - Header - Security - Content-Security-Policy
|
||||
# Version: 0.1.0
|
||||
|
||||
# Copyright 2024 Jake Winters
|
||||
# SPDX-License-Identifier: BSD-3-Clause
|
||||
|
||||
|
||||
add_header Content-Security-Policy "default-src 'self'; img-src 'self'; media-src 'self'; object-src 'none'; script-src 'none'; connect-src 'none'; frame-src 'none'; style-src 'self' 'unsafe-inline'; font-src 'self'";
|
||||
|
Loading…
x
Reference in New Issue
Block a user