Sha256: 1d89068f38e56482ff89fab384bae7ec12eb44ce22b40e247c6433db04c03481

Contents?: true

Size: 583 Bytes

Versions: 11

Compression:

Stored size: 583 Bytes

Contents

::SecureHeaders::Configuration.configure do |config|
  config.hsts = { :max_age => 10.years.to_i.to_s, :include_subdomains => false }
  config.x_frame_options = 'SAMEORIGIN'
  config.x_content_type_options = "nosniff"
  config.x_xss_protection = {:value => 1, :mode => 'block'}
  config.x_permitted_cross_domain_policies = 'none'
  csp = {
    :default_src => "self",
    :script_src => "self nonce",
    :disable_fill_missing => true,
    :report_uri => 'somewhere',
    :script_hash_middleware => true,
    :enforce => false # false means warnings only
  }

  config.csp = csp
end

Version data entries

11 entries across 11 versions & 1 rubygems

Version Path
secure_headers-2.3.0 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.2.4 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.2.3 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.2.2 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.2.1 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.2.0 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.1.0 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.0.2 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.0.1 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.0.0 fixtures/rails_3_2_12/config/initializers/secure_headers.rb
secure_headers-2.0.0.pre2 fixtures/rails_3_2_12/config/initializers/secure_headers.rb