forked from colin/resume
temporarily disable HSTS to resolve certificate provisioning issues
This commit is contained in:
parent
0b693d7d2b
commit
cd94db9c03
|
@ -10,7 +10,7 @@
|
|||
-X-Powered-By
|
||||
|
||||
# HSTS
|
||||
Strict-Transport-Security "max-age=31536000; includeSubDomains"
|
||||
# Strict-Transport-Security "max-age=31536000; includeSubDomains"
|
||||
|
||||
# Basic security headers
|
||||
X-Frame-Options "DENY"
|
||||
|
|
|
@ -32,7 +32,7 @@ app.use((req, res, next) => {
|
|||
res.setHeader('X-XSS-Protection', '1; mode=block');
|
||||
res.setHeader('Referrer-Policy', 'strict-origin-when-cross-origin');
|
||||
res.setHeader('Permissions-Policy', 'geolocation=(), microphone=(), camera=()');
|
||||
res.setHeader('Strict-Transport-Security', 'max-age=31536000; includeSubDomains');
|
||||
// res.setHeader('Strict-Transport-Security', 'max-age=31536000; includeSubDomains');
|
||||
|
||||
next();
|
||||
});
|
||||
|
|
Loading…
Reference in New Issue