Advertisement
Guest User

MMN

a guest
Jan 22nd, 2019
82
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.33 KB | None | 0 0
  1. Header always set Content-Security-Policy "default-src https: data: 'unsafe-inline' 'unsafe-eval'"
  2. Header always set Strict-Transport-Security "max-age=31536000; includeSubDomains"
  3. Header always set X-Frame-Options "SAMEORIGIN"
  4. Header always set X-Xss-Protection "1; mode=block"
  5. Header always set X-Content-Type-Options "nosniff"
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement