continuwuity/servers/traefik/additional/middleware.yml
2024-07-23 23:17:48 +01:00

27 lines
681 B
YAML

http:
middlewares:
default:
chain:
middlewares:
- security-headers
- hsts
- compress
compress:
compress: true
hsts:
headers:
stsIncludeSubdomains: false
stsPreload: true
stsSeconds: 31536000
isDevelopment: false
forceSTSHeader: true
security-headers:
headers:
contentTypeNosniff: true
referrerPolicy: "no-referrer-when-downgrade"
frameDeny: true
customResponseHeaders:
# Cross-Origin-Resource-Policy: same-origin
Cross-Origin-Opener-Policy: same-origin
Cross-Origin-Embedder-Policy: require-corp