Skip to content

Commit 632fe03

Browse files
authored
Add Strict-Transport-Security header to Nginx config (#691)
* Add Strict-Transport-Security header to Nginx config * add to doca/admin
1 parent 168dbff commit 632fe03

2 files changed

Lines changed: 7 additions & 2 deletions

File tree

docs/admin/getting-started/container/docker-compose/docker-external-proxy.md

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -187,7 +187,7 @@ server {
187187
188188
ssl_certificate /etc/letsencrypt/live/cloud.YOUR.DOMAIN/fullchain.pem;
189189
ssl_certificate_key /etc/letsencrypt/live/cloud.YOUR.DOMAIN/privkey.pem;
190-
190+
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
191191
# Increase max upload size (required for Tus — without this, uploads over 1 MB fail)
192192
client_max_body_size 10M;
193193
@@ -200,7 +200,7 @@ server {
200200
proxy_send_timeout 3600s;
201201
keepalive_requests 100000;
202202
keepalive_timeout 5m;
203-
http2_max_concurrent_streams 100;
203+
http2_max_concurrent_streams 512;
204204
205205
# Prevent nginx from trying other upstreams
206206
proxy_next_upstream off;
@@ -221,6 +221,7 @@ server {
221221
222222
ssl_certificate /etc/letsencrypt/live/cloud.YOUR.DOMAIN/fullchain.pem;
223223
ssl_certificate_key /etc/letsencrypt/live/cloud.YOUR.DOMAIN/privkey.pem;
224+
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
224225
# Increase max upload size to collabora editor
225226
client_max_body_size 10M;
226227
@@ -245,6 +246,7 @@ server {
245246
246247
ssl_certificate /etc/letsencrypt/live/cloud.YOUR.DOMAIN/fullchain.pem;
247248
ssl_certificate_key /etc/letsencrypt/live/cloud.YOUR.DOMAIN/privkey.pem;
249+
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
248250
249251
location / {
250252
proxy_pass http://127.0.0.1:9300;

versioned_docs/version-4.0/admin/getting-started/container/docker-compose/docker-external-proxy.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -198,6 +198,7 @@ server {
198198
199199
ssl_certificate /etc/letsencrypt/live/cloud.YOUR.DOMAIN/fullchain.pem;
200200
ssl_certificate_key /etc/letsencrypt/live/cloud.YOUR.DOMAIN/privkey.pem;
201+
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
201202
# Increase max upload size (required for Tus — without this, uploads over 1 MB fail)
202203
client_max_body_size 10M;
203204
@@ -231,6 +232,7 @@ server {
231232
232233
ssl_certificate /etc/letsencrypt/live/cloud.YOUR.DOMAIN/fullchain.pem;
233234
ssl_certificate_key /etc/letsencrypt/live/cloud.YOUR.DOMAIN/privkey.pem;
235+
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
234236
# Increase max upload size to collabora editor
235237
client_max_body_size 10M;
236238
@@ -255,6 +257,7 @@ server {
255257
256258
ssl_certificate /etc/letsencrypt/live/cloud.YOUR.DOMAIN/fullchain.pem;
257259
ssl_certificate_key /etc/letsencrypt/live/cloud.YOUR.DOMAIN/privkey.pem;
260+
add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload" always;
258261
259262
location / {
260263
proxy_pass http://127.0.0.1:9300;

0 commit comments

Comments
 (0)