From: nutra-bot Date: Sat, 22 Apr 2023 17:54:15 +0000 (+0000) Subject: enable HSTS on api server X-Git-Url: https://git.nutra.tk/v1?a=commitdiff_plain;h=1849efe722f6c31e952319fe5d1c5d90d37be62e;p=nutratech%2Fvps-root.git enable HSTS on api server --- diff --git a/etc/nginx/conf.d/default.conf b/etc/nginx/conf.d/default.conf index 8efb6a6..12f5404 100644 --- a/etc/nginx/conf.d/default.conf +++ b/etc/nginx/conf.d/default.conf @@ -11,7 +11,8 @@ server { server_name api-dev.nutra.tk api.dev.nutra.tk; #listen 80; listen 443 ssl http2; - resolver 127.0.0.1; + # HSTS + add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always; # Sanic location / {