From b309e1ce45d06556af8b19ee53cafa9cbf192248 Mon Sep 17 00:00:00 2001 From: quietsy Date: Sun, 19 Sep 2021 22:37:47 +0300 Subject: [PATCH] Add an optional header to opt out of Google FLoC --- readme-vars.yml | 1 + root/defaults/ssl.conf | 3 ++- 2 files changed, 3 insertions(+), 1 deletion(-) diff --git a/readme-vars.yml b/readme-vars.yml index 825a94c..31b1bfd 100755 --- a/readme-vars.yml +++ b/readme-vars.yml @@ -155,6 +155,7 @@ app_setup_nginx_reverse_proxy_block: "" # changelog changelogs: + - { date: "19.09.21:", desc: "Add an optional header to opt out of Google FLoC in `ssl.conf`." } - { date: "17.09.21:", desc: "Mark `SUBDOMAINS` var as optional." } - { date: "01.08.21:", desc: "Add support for ionos dns validation." } - { date: "15.07.21:", desc: "Fix libmaxminddb issue due to upstream change." } diff --git a/root/defaults/ssl.conf b/root/defaults/ssl.conf index d2747f1..204e830 100644 --- a/root/defaults/ssl.conf +++ b/root/defaults/ssl.conf @@ -1,4 +1,4 @@ -## Version 2021/04/27 - Changelog: https://github.com/linuxserver/docker-swag/commits/master/root/defaults/ssl.conf +## Version 2021/09/19 - Changelog: https://github.com/linuxserver/docker-swag/commits/master/root/defaults/ssl.conf ### Mozilla Recommendations # generated 2020-06-17, Mozilla Guideline v5.4, nginx 1.18.0-r0, OpenSSL 1.1.1g-r0, intermediate configuration @@ -38,6 +38,7 @@ ssl_early_data on; # Optional additional headers #add_header Cache-Control "no-transform" always; #add_header Content-Security-Policy "upgrade-insecure-requests; frame-ancestors 'self'"; +#add_header Permissions-Policy "interest-cohort=()"; #add_header Referrer-Policy "same-origin" always; #add_header X-Content-Type-Options "nosniff" always; #add_header X-Frame-Options "SAMEORIGIN" always;