diff --git a/mdk.fr.yml b/mdk.fr.yml index 3b18478..3e5a6df 100644 --- a/mdk.fr.yml +++ b/mdk.fr.yml @@ -34,7 +34,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; server_name julien.palard.fr sizeof.fr www.sizeof.fr; include snippets/letsencrypt-mdk.fr.conf; add_header X-Frame-Options "DENY"; @@ -43,7 +43,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; server_name www.mdk.fr mandark.fr www.mandark.fr; include snippets/letsencrypt-mdk.fr.conf; add_header Content-Security-Policy "frame-ancestors 'none'"; @@ -53,7 +53,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; charset utf-8; server_name mdk.fr; include snippets/letsencrypt-mdk.fr.conf; diff --git a/roles/nginx/defaults/main.yml b/roles/nginx/defaults/main.yml index f1c47fb..f892072 100644 --- a/roles/nginx/defaults/main.yml +++ b/roles/nginx/defaults/main.yml @@ -15,7 +15,7 @@ nginx_conf: | server { - listen [::]:443 ssl; listen 443 ssl; + listen [::]:443 ssl http2; listen 443 ssl http2; charset utf-8; server_name {{ nginx_domain }}; include snippets/letsencrypt-{{ nginx_domain }}.conf; diff --git a/static_websites.yml b/static_websites.yml index ec36695..30ceaf7 100644 --- a/static_websites.yml +++ b/static_websites.yml @@ -19,7 +19,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; charset utf-8; server_name palard.fr www.palard.fr; include snippets/letsencrypt-palard.fr.conf; @@ -105,7 +105,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; server_name le-poitevin.fr; include snippets/letsencrypt-le-poitevin.fr.conf; add_header Content-Security-Policy "frame-ancestors 'none'"; @@ -116,7 +116,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; server_name www.le-poitevin.fr; include snippets/letsencrypt-le-poitevin.fr.conf; add_header Content-Security-Policy "frame-ancestors 'none'"; @@ -143,7 +143,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; charset utf-8; server_name codeenseine.fr; include snippets/letsencrypt-codeenseine.fr.conf; @@ -163,7 +163,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; server_name www.codeenseine.fr; include snippets/letsencrypt-codeenseine.fr.conf; add_header Content-Security-Policy "frame-ancestors 'none'"; @@ -187,7 +187,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; server_name matrix.palard.fr; include snippets/letsencrypt-matrix.palard.fr.conf; add_header Content-Security-Policy "frame-ancestors 'none'"; diff --git a/weechat.yml b/weechat.yml index a82be50..cdf1455 100644 --- a/weechat.yml +++ b/weechat.yml @@ -33,7 +33,7 @@ server { - listen 443 ssl; + listen 443 ssl http2; include snippets/letsencrypt-irc.mdk.fr.conf; add_header Content-Security-Policy "default-src 'self'; img-src 'self'; script-src 'self' 'unsafe-eval' 'unsafe-inline' cdnjs.cloudflare.com; style-src 'self' 'unsafe-inline' cdnjs.cloudflare.com; object-src 'none'; frame-src 'none'; font-src cdnjs.cloudflare.com;"; add_header X-Frame-Options DENY;