]> Nutra Git (v2) - nutratech/vps-root.git/commitdiff
enable HSTS on api server
authornutra-bot <nutradigest@gmail.com>
Sat, 22 Apr 2023 17:54:15 +0000 (17:54 +0000)
committernutra-bot <nutradigest@gmail.com>
Sat, 22 Apr 2023 17:54:15 +0000 (17:54 +0000)
etc/nginx/conf.d/default.conf

index 8efb6a6737d4d38cd8307f0ef272f8ef44f48e18..12f5404392f31baf55704265b5d622fdd9200c23 100644 (file)
@@ -11,7 +11,8 @@ server {
   server_name api-dev.nutra.tk api.dev.nutra.tk;
   #listen 80;
   listen 443 ssl http2;
-  resolver 127.0.0.1;
+  # HSTS
+  add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
 
   # Sanic
   location / {