CSP handlers are floody in case users do have some plugins, that make the logs unreadable.

This commit is contained in:
Julien Palard 2023-11-27 21:40:10 +01:00
parent 313ce5ab06
commit 390a0c0bf0
Signed by: mdk
GPG Key ID: 0EFC1AC1006886F8
1 changed files with 2 additions and 6 deletions

View File

@ -218,9 +218,7 @@
ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIHVrME7+AYhM4n6opE5gVJbWsZHLETucV2wV+kDvnLk3
{{ authorized_keys['mdk'] | join(LF) }}
nginx_extra: |
add_header Reporting-Endpoints xmpp="https://http-to-xmpp.afpy.org";
add_header Report-To '{"group": "xmpp", "max_age": 86400, "endpoints": [{"url": "https://http-to-xmpp.afpy.org"}]}';
add_header Content-Security-Policy "default-src 'none'; font-src https://cdnjs.cloudflare.com; img-src 'self' https://www.gravatar.com; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com; script-src 'self' https://cdnjs.cloudflare.com; frame-ancestors 'self'; report-uri https://http-to-xmpp.afpy.org; report-to xmpp";
add_header Content-Security-Policy "default-src 'none'; font-src https://cdnjs.cloudflare.com; img-src 'self' https://www.gravatar.com; style-src 'self' 'unsafe-inline' https://cdnjs.cloudflare.com; script-src 'self' https://cdnjs.cloudflare.com; frame-ancestors 'self';";
add_header X-Content-Type-Options "nosniff";
- name: Setup nantes.afpy.org
@ -271,9 +269,7 @@
{
listen [::]:443 ssl http2; listen 443 ssl http2;
server_name photos.afpy.org;
add_header Reporting-Endpoints xmpp="https://http-to-xmpp.afpy.org";
add_header Report-To '{"group": "xmpp", "max_age": 86400, "endpoints": [{"url": "https://http-to-xmpp.afpy.org"}]}';
add_header Content-Security-Policy "default-src 'none'; img-src 'self'; style-src 'self'; script-src 'self'; frame-ancestors 'self'; report-uri https://http-to-xmpp.afpy.org; report-to xmpp";
add_header Content-Security-Policy "default-src 'none'; img-src 'self'; style-src 'self'; script-src 'self'; frame-ancestors 'self';";
add_header X-Content-Type-Options "nosniff";
include snippets/letsencrypt-photos.afpy.org.conf;
root /var/www/photos.afpy.org/;