Add X-Frame-Options header to securehttps
This commit is contained in:
parent
66dedbcbf7
commit
dd8e7d67aa
@ -33,7 +33,7 @@
|
|||||||
traefik.http.routers.nextcloud.rule: "Host(`{{ nextcloud_domain }}`)"
|
traefik.http.routers.nextcloud.rule: "Host(`{{ nextcloud_domain }}`)"
|
||||||
traefik.http.routers.nextcloud.entrypoints: websecure
|
traefik.http.routers.nextcloud.entrypoints: websecure
|
||||||
traefik.http.routers.nextcloud.tls.certresolver: letsencrypt
|
traefik.http.routers.nextcloud.tls.certresolver: letsencrypt
|
||||||
traefik.http.routers.nextcloud.middlewares: "securehttps@file,nextcloud@file,nextcloud-webdav"
|
traefik.http.routers.nextcloud.middlewares: "securehttps@file,nextcloud-webdav"
|
||||||
traefik.http.middlewares.nextcloud-webdav.redirectregex.regex: "https://(.*)/.well-known/(card|cal)dav"
|
traefik.http.middlewares.nextcloud-webdav.redirectregex.regex: "https://(.*)/.well-known/(card|cal)dav"
|
||||||
traefik.http.middlewares.nextcloud-webdav.redirectregex.replacement: "https://${1}/remote.php/dav/"
|
traefik.http.middlewares.nextcloud-webdav.redirectregex.replacement: "https://${1}/remote.php/dav/"
|
||||||
traefik.http.middlewares.nextcloud-webdav.redirectregex.permanent: "true"
|
traefik.http.middlewares.nextcloud-webdav.redirectregex.permanent: "true"
|
||||||
|
@ -5,9 +5,6 @@ tls:
|
|||||||
|
|
||||||
http:
|
http:
|
||||||
middlewares:
|
middlewares:
|
||||||
nextcloud:
|
|
||||||
headers:
|
|
||||||
customFrameOptionsValue: SAMEORIGIN
|
|
||||||
securehttps:
|
securehttps:
|
||||||
headers:
|
headers:
|
||||||
frameDeny: true
|
frameDeny: true
|
||||||
@ -16,3 +13,4 @@ http:
|
|||||||
contentTypeNosniff: true
|
contentTypeNosniff: true
|
||||||
stsPreload: {{ traefik_hsts_preload }}
|
stsPreload: {{ traefik_hsts_preload }}
|
||||||
stsSeconds: {{ traefik_hsts_seconds }}
|
stsSeconds: {{ traefik_hsts_seconds }}
|
||||||
|
customFrameOptionsValue: SAMEORIGIN
|
||||||
|
Loading…
Reference in New Issue
Block a user