Use "always" condition for security headers

Signed-off-by: J0WI <J0WI@users.noreply.github.com>
This commit is contained in:
J0WI 2019-07-01 18:41:59 +02:00 committed by Roeland Jago Douma
parent 3f2932c75a
commit bd9403d3da
No known key found for this signature in database
GPG Key ID: F941078878347C0C
1 changed files with 7 additions and 7 deletions

View File

@ -11,13 +11,13 @@
<IfModule mod_env.c> <IfModule mod_env.c>
# Add security and privacy related headers # Add security and privacy related headers
Header set Referrer-Policy "no-referrer" Header always set Referrer-Policy "no-referrer"
Header set X-Content-Type-Options "nosniff" Header always set X-Content-Type-Options "nosniff"
Header set X-Download-Options "noopen" Header always set X-Download-Options "noopen"
Header set X-Frame-Options "SAMEORIGIN" Header always set X-Frame-Options "SAMEORIGIN"
Header set X-Permitted-Cross-Domain-Policies "none" Header always set X-Permitted-Cross-Domain-Policies "none"
Header set X-Robots-Tag "none" Header always set X-Robots-Tag "none"
Header set X-XSS-Protection "1; mode=block" Header always set X-XSS-Protection "1; mode=block"
SetEnv modHeadersAvailable true SetEnv modHeadersAvailable true
</IfModule> </IfModule>