Commit Graph

121 Commits

Author SHA1 Message Date
Tommy e2eea3c59f
Fix security headers 2023-08-15 17:15:04 -07:00
Tommy 9adff8c49b
Update README.md
Signed-off-by: Tommy <contact@tommytran.io>
2023-07-31 03:53:15 -07:00
Tommy Tran 728e7362dd
Make synapse use runc runtime
Signed-off-by: Tommy Tran <contact@tommytran.io>
2023-06-04 06:08:04 -07:00
Tommy Tran 15f60065a7
Set postgres runtime to runc
Signed-off-by: Tommy Tran <contact@tommytran.io>
2023-06-04 03:36:06 -07:00
Tommy 06f63c3c9b
Remove redundant header line
Signed-off-by: Tommy <contact@tommytran.io>
2023-04-12 08:02:15 -04:00
Tommy c58483e28a
Increase timeout
Signed-off-by: Tommy <contact@tommytran.io>
2023-04-12 07:59:05 -04:00
Tommy 0ed328280e
Change X-Frame-Options to SAMEORIGIN
Signed-off-by: Tommy <contact@tommytran.io>
2023-04-12 07:58:38 -04:00
Tommy 61f3a4c088
Move HSTS to reverse proxy configs and remove redundant X-Frame-Options 2023-04-12 07:39:40 -04:00
Tommy 3d036d96e8
Add X-Frame-Options
Signed-off-by: Tommy <contact@tommytran.io>
2023-04-12 07:35:13 -04:00
Tommy ae61091364
Change back to swag's ciphersuite
Signed-off-by: Tommy <contact@tommytran.io>
2023-04-12 07:33:52 -04:00
Tommy 7a2adac1d6
Increase timeout
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-29 13:35:16 -04:00
Tommy fcfb3d9f89
PrioritizeChaCha
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-29 03:16:29 -04:00
Tommy 9f8e1b7a52
Update README.md
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-20 12:01:41 -04:00
Tommy cfff6d090a
Add Matrix-to
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-16 23:01:27 -04:00
Tommy 487c2a2c1f
Add notes about CSP
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-16 11:26:30 -04:00
Tommy 920d69e5f6
Add port 8448
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-16 07:44:05 -04:00
Tommy c91123febc
Add CAP_NET_BIND_SERVICE
Signed-off-by: Tommy <contact@tommytran.io>
2023-03-15 17:09:51 -04:00
Tommy 8a94a7c47d
Remove unnecessary entries
Signed-off-by: Tommy <contact@tommytran.io>
2023-01-25 11:13:25 -05:00
Tommy afe398175f
Remove Expect-CT
Signed-off-by: Tommy <contact@tommytran.io>
2022-12-26 09:55:30 -05:00
Tommy 9003769c9b
Fix media-src
Signed-off-by: Tommy <contact@tommytran.io>
2022-12-25 19:15:58 -05:00
Tommy cb47771277
Fix Recaptcha
Signed-off-by: Tommy <contact@tommytran.io>
2022-12-14 03:52:06 -05:00
Tommy f4d441df1d
Stricter ciphers
Signed-off-by: Tommy <contact@tommytran.io>
2022-12-01 20:12:21 -05:00
Tommy 81e933e77c
Add postgres healthcheck
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-30 23:04:33 -05:00
Tommy 8ab7c6f66e
Consistency Fix
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-30 04:03:55 -05:00
Tommy 07cbbb1a6d
Update README.md
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-25 09:26:05 -05:00
Tommy dd11f6d8f9
No new privileges for swag
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-25 07:21:12 -05:00
Tommy ed2c9d2359
Update docker-compose.yml
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-24 22:41:53 -05:00
Tommy 0f04babf91
Fix CORP
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-24 08:46:29 -05:00
Tommy cd9e071a11
Update ssl.conf
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-23 08:34:41 -05:00
Tommy 95bb316d7a
Properly isolate networks
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-23 06:33:10 -05:00
Tommy 80a03b6a96
Update reverse proxy configs
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-22 15:55:58 -05:00
Tommy ea363f476b
Update headers
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-21 23:34:53 -05:00
Tommy 306823f364
Improved Security Headers
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-18 15:23:52 -05:00
Tommy 119d59569d
Pin postgres version and increase shm size
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-18 04:39:33 -05:00
Tommy 1d762de261
Update ssl.conf
Signed-off-by: Tommy <contact@tommytran.io>
2022-11-17 23:04:47 -05:00
Sander Datema ddfcc4c37c
Update docker-compose.yml (#2)
There should be no `docker pull` in `image:`.

Signed-off-by: Sander Datema <176252+sanderdatema@users.noreply.github.com>

Signed-off-by: Sander Datema <176252+sanderdatema@users.noreply.github.com>
2022-11-16 01:36:26 -05:00
Tommy 612ab82db0
Fixes CSP
Signed-off-by: Tommy <contact@tommytran.io>
2022-10-20 06:05:36 -04:00
Tommy f6e3c19df7
Comment out postgres security options
Signed-off-by: Tommy <contact@tommytran.io>
2022-10-17 04:37:18 -04:00
Tommy f9a95fb855
Increase timeout
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-28 13:36:39 -04:00
Tommy 2f05dc5c7c
More hardening
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-13 14:40:42 -04:00
Tommy fb2cbf80bb
Consistency
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-13 03:50:45 -04:00
Tommy e270358b1c
Run Postgres unprivileged
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-12 03:49:16 -04:00
Tommy aa0705dd6c
Drop capabilities
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-11 16:27:53 -04:00
Tommy 2e1c342549
Update README.md
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-11 15:15:02 -04:00
Tommy 1e472ff175
Comment out Mjolnir abuse reports
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-07 15:09:56 -04:00
Tommy 96fc04e271
Remove duplicated CORS Origin
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-07 15:05:23 -04:00
Tommy 57ccfb122f
Update README.md
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-07 13:50:27 -04:00
Tommy 3d0719a90c
Change Mjolnir port
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-07 13:47:43 -04:00
Tommy 3a5e9979b0
Add Mjolnir reverse proxy
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-07 13:44:44 -04:00
Tommy 20524a1cad
Add UID:GID
Signed-off-by: Tommy <contact@tommytran.io>
2022-09-06 11:46:03 -04:00