srobo / ansible

Ansible configuration for Student Robotics' pet machines
MIT License
0 stars 4 forks source link

Add some security headers #44

Closed PeterJCLaw closed 1 year ago

PeterJCLaw commented 1 year ago

Summary

Add a couple of security headers. We're basically fine without these, but they're cheap to add and shut up some of the warnings we otherwise get on the various online checkers.

Code review

Testing

Links

https://scotthelme.co.uk/a-new-security-header-referrer-policy/ https://scotthelme.co.uk/hardening-your-http-response-headers/#x-content-type-options https://securityheaders.com/?followRedirects=on&hide=on&q=studentrobotics.org https://observatory.mozilla.org/analyze/studentrobotics.org