diff --git a/deploy/nginx/nginx.conf b/deploy/nginx/nginx.conf index 1ed271db5b545164fa7d92bfffa8e95835a9cfc4..a4f729ecd7a373df96b750bf55c91542d5d8db79 100644 --- a/deploy/nginx/nginx.conf +++ b/deploy/nginx/nginx.conf @@ -53,7 +53,7 @@ http { server { listen 8080 ssl default_server; - server_name openlookeng.io; + server_name openlookeng.io; charset utf-8; add_header X-XSS-Protection "1; mode=block"; @@ -64,7 +64,6 @@ http { add_header Cache-Control "no-cache,no-store,must-revalidate"; add_header Pragma no-cache; add_header Expires 0; - add_header Referrer-Policy "no-referrer"; limit_conn limitperip 10; ssl_session_tickets off; @@ -105,6 +104,7 @@ http { limit_req zone=ratelimit burst=5 nodelay; proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; proxy_set_header Host $host; + location /assets { add_header X-XSS-Protection "1; mode=block"; add_header X-Frame-Options DENY; @@ -112,7 +112,6 @@ http { add_header Strict-Transport-Security "max-age=31536000; includeSubDomains"; add_header Content-Security-Policy "script-src 'self' *.baidu.com 'unsafe-inline' 'unsafe-eval' ; object-src 'none'; frame-src 'none'"; add_header Cache-Control "public,max-age=1209600"; - add_header Referrer-Policy "no-referrer"; } root /usr/share/nginx/www;