From 5278d022056da6cbc4e20612d465bbcd23d59092 Mon Sep 17 00:00:00 2001 From: Dryusdan Date: Thu, 27 May 2021 11:26:06 +0200 Subject: [PATCH 1/5] Change remove error page --- templates/vhosts/partials/errors.j2 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/templates/vhosts/partials/errors.j2 b/templates/vhosts/partials/errors.j2 index fadbe87..5bee4af 100644 --- a/templates/vhosts/partials/errors.j2 +++ b/templates/vhosts/partials/errors.j2 @@ -1,4 +1,4 @@ - {% if errorpage is defined and errorpage is False %} + {% if remove_error_pages not defined %} error_page 401 /401.html; location = /401.html { root /var/www/html/errors/; From cb5fcc3bc41602f0ce31635fbee362fd4a1eaee7 Mon Sep 17 00:00:00 2001 From: Dryusdan Date: Thu, 27 May 2021 11:28:27 +0200 Subject: [PATCH 2/5] Typo --- templates/vhosts/partials/errors.j2 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/templates/vhosts/partials/errors.j2 b/templates/vhosts/partials/errors.j2 index 5bee4af..82ab72a 100644 --- a/templates/vhosts/partials/errors.j2 +++ b/templates/vhosts/partials/errors.j2 @@ -1,4 +1,4 @@ - {% if remove_error_pages not defined %} + {% if remove_error_pages is not defined %} error_page 401 /401.html; location = /401.html { root /var/www/html/errors/; From d6406e6c69705c3608558f99ac3a3cf36d3bf4be Mon Sep 17 00:00:00 2001 From: Dryusdan Date: Thu, 27 May 2021 11:32:28 +0200 Subject: [PATCH 3/5] Change undefined var --- templates/vhosts/partials/errors.j2 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/templates/vhosts/partials/errors.j2 b/templates/vhosts/partials/errors.j2 index 82ab72a..e241688 100644 --- a/templates/vhosts/partials/errors.j2 +++ b/templates/vhosts/partials/errors.j2 @@ -1,4 +1,4 @@ - {% if remove_error_pages is not defined %} + {% if item.remove_error_pages is not defined %} error_page 401 /401.html; location = /401.html { root /var/www/html/errors/; From 728819ace382e8dcf229fa7b1c3121ddae9ae824 Mon Sep 17 00:00:00 2001 From: Dryusdan Date: Thu, 27 May 2021 12:10:57 +0200 Subject: [PATCH 4/5] Remove all referer-policy --- files/etc/nginx/conf.d/headers.conf | 1 + 1 file changed, 1 insertion(+) diff --git a/files/etc/nginx/conf.d/headers.conf b/files/etc/nginx/conf.d/headers.conf index 8c611e5..27e2089 100644 --- a/files/etc/nginx/conf.d/headers.conf +++ b/files/etc/nginx/conf.d/headers.conf @@ -4,3 +4,4 @@ add_header X-Frame-Options "SAMEORIGIN" always; add_header Permissions-Policy interest-cohort=(); more_clear_headers x-powered-by; more_clear_headers server; +more_clear_headers referrer-policy; From bee92db3713554f3654144efbc1e40f6f5e572cf Mon Sep 17 00:00:00 2001 From: Dryusdan Date: Thu, 27 May 2021 12:12:41 +0200 Subject: [PATCH 5/5] Remove all duplicate header --- files/etc/nginx/conf.d/headers.conf | 10 +++++++--- 1 file changed, 7 insertions(+), 3 deletions(-) diff --git a/files/etc/nginx/conf.d/headers.conf b/files/etc/nginx/conf.d/headers.conf index 27e2089..a69e426 100644 --- a/files/etc/nginx/conf.d/headers.conf +++ b/files/etc/nginx/conf.d/headers.conf @@ -1,7 +1,11 @@ +more_clear_headers x-powered-by; +more_clear_headers server; +more_clear_headers referrer-policy; +more_clear_headers x-xss-protection; +more_clear_headers referrer-policy; +more_clear_headers x-content-type-options; + add_header X-Content-Type-Options nosniff; add_header X-XSS-Protection "1; mode=block"; add_header X-Frame-Options "SAMEORIGIN" always; add_header Permissions-Policy interest-cohort=(); -more_clear_headers x-powered-by; -more_clear_headers server; -more_clear_headers referrer-policy;