Skip to content

Commit

Permalink
update nginx vhost templates for optional Referrer-Policy headers
Browse files Browse the repository at this point in the history
  • Loading branch information
centminmod committed Feb 17, 2018
1 parent 963cfba commit 01d7a9e
Show file tree
Hide file tree
Showing 13 changed files with 30 additions and 0 deletions.
3 changes: 3 additions & 0 deletions addons/acmetool.sh
Expand Up @@ -919,6 +919,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -1248,6 +1249,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -1355,6 +1357,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down
4 changes: 4 additions & 0 deletions config/nginx/staticfiles.conf
Expand Up @@ -22,6 +22,7 @@
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
add_header Access-Control-Allow-Origin *;
add_header Cache-Control "public, must-revalidate, proxy-revalidate, immutable, stale-while-revalidate=86400, stale-if-error=604800";
access_log off;
Expand All @@ -34,6 +35,7 @@
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
add_header Access-Control-Allow-Origin *;
add_header Cache-Control "public, must-revalidate, proxy-revalidate, immutable, stale-while-revalidate=86400, stale-if-error=604800";
access_log off;
Expand All @@ -46,6 +48,7 @@
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
#add_header Cache-Control "public, must-revalidate, proxy-revalidate";
#access_log off;
#expires 1d;
Expand All @@ -57,6 +60,7 @@
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
add_header Access-Control-Allow-Origin *;
add_header Cache-Control "public, must-revalidate, proxy-revalidate";
access_log off;
Expand Down
3 changes: 3 additions & 0 deletions inc/nginx_addvhost.inc
Expand Up @@ -702,6 +702,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down Expand Up @@ -786,6 +787,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -869,6 +871,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
4 changes: 4 additions & 0 deletions inc/wpsetup.inc
Expand Up @@ -964,6 +964,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down Expand Up @@ -1089,6 +1090,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand All @@ -1108,6 +1110,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down Expand Up @@ -1227,6 +1230,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
1 change: 1 addition & 0 deletions templates/vhost-non-wp-http.txt
Expand Up @@ -22,6 +22,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
1 change: 1 addition & 0 deletions templates/vhost-non-wp-https.txt
Expand Up @@ -34,6 +34,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down
1 change: 1 addition & 0 deletions templates/vhost-non-wp-nv-http.txt
Expand Up @@ -22,6 +22,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
1 change: 1 addition & 0 deletions templates/vhost-non-wp-nv-https-default.txt
Expand Up @@ -34,6 +34,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down
1 change: 1 addition & 0 deletions templates/vhost-non-wp-nv-https.txt
Expand Up @@ -34,6 +34,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down
1 change: 1 addition & 0 deletions templates/vhost-wp-http.txt
Expand Up @@ -22,6 +22,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
2 changes: 2 additions & 0 deletions templates/vhost-wp-https.txt
Expand Up @@ -33,6 +33,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand All @@ -52,6 +53,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";

# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
5 changes: 5 additions & 0 deletions tools/nv.sh
Expand Up @@ -801,6 +801,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
# limit_conn limit_per_ip 16;
# ssi on;
Expand Down Expand Up @@ -892,6 +893,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -988,6 +990,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -1082,6 +1085,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -1166,6 +1170,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
# limit_conn limit_per_ip 16;
# ssi on;
Expand Down
3 changes: 3 additions & 0 deletions tools/nvwp.sh
Expand Up @@ -654,6 +654,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
# limit_conn limit_per_ip 16;
# ssi on;
Expand Down Expand Up @@ -749,6 +750,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
$COMP_HEADER;
ssl_buffer_size 1369;
ssl_session_tickets on;
Expand Down Expand Up @@ -849,6 +851,7 @@ server {
#add_header X-Frame-Options SAMEORIGIN;
#add_header X-Xss-Protection "1; mode=block" always;
#add_header X-Content-Type-Options "nosniff" always;
#add_header Referrer-Policy "strict-origin-when-cross-origin";
# limit_conn limit_per_ip 16;
# ssi on;
Expand Down

0 comments on commit 01d7a9e

Please sign in to comment.