nixos/solitary: Widen cross‐origin policies
This commit is contained in:
parent
2ad94c9f55
commit
b66d1693dc
|
@ -378,8 +378,8 @@ in {
|
|||
|
||||
http-response set-header Alt-Svc "h3=\":443\""
|
||||
http-response set-header Cross-Origin-Embedder-Policy require-corp if no-coep
|
||||
http-response set-header Cross-Origin-Opener-Policy same-origin if no-coop
|
||||
http-response set-header Cross-Origin-Resource-Policy same-origin if no-corp
|
||||
http-response set-header Cross-Origin-Opener-Policy same-site if no-coop
|
||||
http-response set-header Cross-Origin-Resource-Policy same-site if no-corp
|
||||
http-response set-header Content-Security-Policy "default-src 'self'; frame-ancestors 'none'" if no-csp
|
||||
http-response set-header Referrer-Policy same-origin if no-rp
|
||||
http-response set-header Strict-Transport-Security "max-age=63072000; includeSubdomains; preload"
|
||||
|
|
Loading…
Reference in a new issue