diff --git a/nginx/mailcow.conf b/nginx/mailcow.conf index 6334bc3..920aacc 100644 --- a/nginx/mailcow.conf +++ b/nginx/mailcow.conf @@ -66,11 +66,9 @@ server { include /etc/nginx/snippets/ssl.conf; ssl_trusted_certificate /opt/mailcow-dockerized/data/assets/ssl/cert.pem; - - add_header X-XSS-Protection "1; mode=block"; - add_header Referrer-Policy "strict-origin"; + add_header Content-Security-Policy "upgrade-insecure-requests"; - add_header Strict-Transport-Security "max-age=31536000"; + include /etc/nginx/snippets/letsencrypt.conf; location / {