This commit is contained in:
Julien Palard 2023-07-03 18:36:18 +02:00
parent 88101bfc83
commit 8a43f7e02f
Signed by: mdk
GPG Key ID: 0EFC1AC1006886F8
1 changed files with 37 additions and 7 deletions

View File

@ -13,10 +13,10 @@
nginx_path: /var/www/mdk.fr/
nginx_public_deploy_key: |
ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIC/8I1ecV8EutLc+Qx6Q8b2RhzXMl9n23LznNlw+MQtM mdk.fr
ssh-ed25519 AAAAC3NzaC1lZDI1NTE5AAAAIETtLGjVKqpQ4bQRh108Bi5vkc8omuEwZPEUbeysLfci formations
nginx_conf: |
add_header Content-Security-Policy "frame-ancestors 'none'";
add_header Content-Security-Policy "default-src 'none'; font-src 'self'; script-src 'unsafe-inline' 'self'; style-src 'unsafe-inline' 'self'; img-src 'self'; frame-ancestors 'none'";
add_header X-Frame-Options "DENY";
add_header X-Content-Type-Options "nosniff";
server
{
@ -37,7 +37,6 @@
listen 443 ssl http2;
server_name julien.palard.fr sizeof.fr www.sizeof.fr;
include snippets/letsencrypt-mdk.fr.conf;
add_header X-Frame-Options "DENY";
return 301 https://mdk.fr;
}
@ -46,8 +45,6 @@
listen 443 ssl http2;
server_name www.mdk.fr mandark.fr www.mandark.fr;
include snippets/letsencrypt-mdk.fr.conf;
add_header Content-Security-Policy "frame-ancestors 'none'";
add_header X-Frame-Options "DENY";
return 301 https://mdk.fr$request_uri;
}
@ -57,8 +54,6 @@
charset utf-8;
server_name mdk.fr;
include snippets/letsencrypt-mdk.fr.conf;
add_header Content-Security-Policy "default-src 'none'; font-src 'self'; script-src 'self'; style-src 'self'; img-src 'self'";
add_header X-Frame-Options "DENY";
gzip_static on;
location /noindex/ {
@ -73,6 +68,41 @@
autoindex on;
}
location /carte/ {
allow 82.64.237.93;
allow 2a01:e0a:15:ac20::/64;
deny all;
add_header Content-Security-Policy "frame-ancestors 'none'";
add_header X-Frame-Options "DENY";
add_header X-Content-Type-Options "nosniff";
}
location /photos/ {
allow 82.64.237.93;
allow 2a01:e0a:15:ac20::/64;
deny all;
add_header Content-Security-Policy "default-src 'none'; font-src 'self'; script-src 'unsafe-inline' 'self'; style-src 'unsafe-inline' 'self'; img-src 'self'";
add_header X-Frame-Options "DENY";
add_header X-Content-Type-Options "nosniff";
}
location /x/ {
add_header Content-Security-Policy "frame-ancestors 'none'";
add_header X-Frame-Options "DENY";
add_header X-Content-Type-Options "nosniff";
}
location /python-avancé/ {
add_header X-Frame-Options "DENY";
add_header X-Content-Type-Options "nosniff";
}
location /python-initiation/ {
add_header X-Frame-Options "DENY";
add_header X-Content-Type-Options "nosniff";
}
root /var/www/mdk.fr/;
index index.html;
}