From 3f27891d9b560008f67d36faf3d609e7fe54bead Mon Sep 17 00:00:00 2001 From: Edwin Lyon <53972157+practical-engelbart@users.noreply.github.com> Date: Thu, 5 Nov 2020 16:14:28 -0800 Subject: [PATCH] Update mailcow.conf --- nginx/mailcow.conf | 6 ++---- 1 file changed, 2 insertions(+), 4 deletions(-) diff --git a/nginx/mailcow.conf b/nginx/mailcow.conf index 6334bc3..920aacc 100644 --- a/nginx/mailcow.conf +++ b/nginx/mailcow.conf @@ -66,11 +66,9 @@ server { include /etc/nginx/snippets/ssl.conf; ssl_trusted_certificate /opt/mailcow-dockerized/data/assets/ssl/cert.pem; - - add_header X-XSS-Protection "1; mode=block"; - add_header Referrer-Policy "strict-origin"; + add_header Content-Security-Policy "upgrade-insecure-requests"; - add_header Strict-Transport-Security "max-age=31536000"; + include /etc/nginx/snippets/letsencrypt.conf; location / {