Sha256: 7c21561e942e0744600ad0224a1d082380cb97d96b9774b08be2a2ff115a96d8

Contents?: true

Size: 552 Bytes

Versions: 9

Compression:

Stored size: 552 Bytes

Contents

::SecureHeaders::Configuration.configure do |config|
  config.hsts = { :max_age => 10.years.to_i.to_s, :include_subdomains => false }
  config.x_frame_options = 'SAMEORIGIN'
  config.x_content_type_options = "nosniff"
  config.x_xss_protection = {:value => 1, :mode => 'block'}
  config.x_permitted_cross_domain_policies = 'none'
  csp = {
    :default_src => "'self'",
    :script_src => "'self' nonce",
    :report_uri => 'somewhere',
    :script_hash_middleware => true,
    :enforce => false # false means warnings only
  }

  config.csp = csp
end

Version data entries

9 entries across 9 versions & 1 rubygems

Version Path
secure_headers-2.5.3 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.5.2 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.5.1 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.5.0 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.4.4 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.4.3 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.4.2 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.4.1 fixtures/rails_3_2_22/config/initializers/secure_headers.rb
secure_headers-2.4.0 fixtures/rails_3_2_22/config/initializers/secure_headers.rb