You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
b668eccc17
1181: Update to address issue #1178 (HTTP headers) r=muhlemmer a=bladeswords This change should remove the duplicate `x-xss-protection` header and also the `x-powered-by` header. Hopefully a pull request to main is appropriate, but may be worth back porting to 1.7. Tested config by modifying live 1.7 nginx config and reloading. Has had the desired outcome of removing the headers. ```/etc/nginx # nginx -t -c /etc/nginx/nginx.conf nginx: the configuration file /etc/nginx/nginx.conf syntax is ok nginx: configuration file /etc/nginx/nginx.conf test is successful /etc/nginx # nginx -s reload ``` These steps were based on: - https://serverfault.com/questions/928912/how-do-i-remove-a-server-added-header-from-proxied-location - https://serverfault.com/questions/929571/overwrite-http-headers-comming-back-from-a-web-application-server-proxied-in-ngi - http://nginx.org/en/docs/http/ngx_http_proxy_module.html#proxy_hide_header ## What type of PR? Enhancement ## What does this PR do? Removes duplicate and unneeded headers. See issue #1178 ### Related issue(s) - issue: #1178 ## Prerequistes Before we can consider review and merge, please make sure the following list is done and checked. If an entry in not applicable, you can check it or remove it from the list. - [ X ] In case of feature or enhancement: documentation updated accordingly - [ X ] Unless it's docs or a minor change: add [changelog](https://mailu.io/master/contributors/guide.html#changelog) entry file. Co-authored-by: bladeswords <bladeswords@users.noreply.github.com> |
5 years ago | |
---|---|---|
.. | ||
conf | 5 years ago | |
static | 6 years ago | |
Dockerfile | 5 years ago | |
certwatcher.py | 6 years ago | |
config.py | 5 years ago | |
letsencrypt.py | 6 years ago | |
start.py | 6 years ago |