Files
fedora-infra_ansible/roles/pagure/templates/securityheaders.conf
Pierre-Yves Chibon dc59446b99 pagure: drop the frontend sub-directory
Signed-off-by: Pierre-Yves Chibon <pingou@pingoured.fr>
2020-10-01 16:14:06 +02:00

9 lines
342 B
Plaintext

Header always set X-Xss-Protection "1; mode=block"
Header always set X-Content-Type-Options "nosniff"
Header always set Referrer-Policy "same-origin"
{% if env == 'pagure-staging' %}
Header always set X-Frame-Options "ALLOW-FROM https://stg.pagure.io/"
{% else %}
Header always set X-Frame-Options "ALLOW-FROM https://pagure.io/"
{% endif %}