Skip to content

Use always for security headers #1527

@lognaturel

Description

@lognaturel

By default, nginx only applies headers to success responses. Security-related headers, especially CSP, should always be applied: https://nginx.org/en/docs/http/ngx_http_headers_module.html#add_header

Metadata

Metadata

Assignees

Labels

opsDocker, nginx, ops to deploy Central

Type

No type

Projects

Status

✅ done

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions