Skip to content

Instantly share code, notes, and snippets.

@jiri001meitner
Last active February 13, 2024 13:19
Show Gist options
  • Save jiri001meitner/0a56c8bf4eacd2b367db04169a606104 to your computer and use it in GitHub Desktop.
Save jiri001meitner/0a56c8bf4eacd2b367db04169a606104 to your computer and use it in GitHub Desktop.
Caddy web server: Caddyfile shared_settings snippet for static webpages
(shared_settings_static) {
encode zstd gzip
file_server {
precompressed zstd br gzip
}
import logging
header Strict-Transport-Security "max-age=63072000; includeSubDomains; preload"
header X-XSS-Protection "1; mode=block"
header X-Frame-Options DENY
header Content-Security-Policy "upgrade-insecure-requests;"
header Referrer-Policy "no-referrer-when-downgrade"
header Server "ITisLove"
header Access-Control-Allow-Origin "https://{host}"
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment