Commit Graph

80 Commits (64a3993425a062842a6affc7a6faa81c194c5e2b)

Author SHA1 Message Date
vaartis 9e43a28bc3 Update the openrc service's retry with the correct format
6 years ago
shibayashi 2a818a3e77
Add comments and change default path of the Mix binary.
6 years ago
kaniini c445c9e125 Merge branch 'fix-nginx-caching' into 'develop'
6 years ago
Mark Felder cc3a83a730 Fix nginx caching issues
6 years ago
Mark Felder efaa41fad2 Consistent intentation
6 years ago
Mark Felder fda942c329 Cache partial objects for 10 minutes
6 years ago
Mark Felder ce224ba5f0 Streaming is enabled by default
6 years ago
kaniini 89fbed8821 Merge branch 'systemd-drop-sysadmin-privilege' into 'develop'
6 years ago
shibayashi 64035201b5
Security/Drops the sysadmin privilege from the daemon
6 years ago
scarlett 4b40e4188c Simplify the NetBSD rc script.
6 years ago
scarlett 9d3eda1959 Add an rc.d script for NetBSD.
6 years ago
nonlinear 75f2177d5b Update/add OpenBSD config files
6 years ago
nonlinear 04513a13e0 Added init file for OpenBSD
6 years ago
Mark Felder d56772c813 proxy buffering still needs to be off
6 years ago
Mark Felder 48c4f88ffd Update proxy config to improve behavior and allow compatibility with Safari on MacOS and iOS
6 years ago
href 97b00d366f
reverse_proxy: more headers
6 years ago
lambda c3f562a611 Merge branch 'add-MIX_ENV-to-systemd-example' into 'develop'
6 years ago
shibayashi 124a9bb7a5
Add MIX_ENV=prod
6 years ago
William Pitcock e4bd5a6950 example configs: kill STS/CT headers
6 years ago
William Pitcock 057a9017b3 example configs: remove obsolete CSP configuration
6 years ago
William Pitcock fd918863aa nginx example config: remove CORS headers, now managed by CORSPlug.
6 years ago
kaniini e1c40b8ca2 Merge branch 'patch-2' into 'develop'
6 years ago
Hakaba Hitoyo 3ea4f9ac8d Remove Access-Control-Allow-Origin
6 years ago
shibayashi 800d233631
Use example.tld so a single search and replace works
6 years ago
shibayashi 941f9a888c
Update instructions
6 years ago
shibayashi 732d3fce73
Use the same example domain in all config examples
6 years ago
shibayashi 56c49513e0
Use the server name as variable
6 years ago
shibayashi 043cb7138e
Add a little bit more detail in the comments.
6 years ago
shibayashi 0a58428de6
Add some security related directives to the systemd service example
6 years ago
barrucadu a32e013909 Relax form-action content security policy
6 years ago
shibayashi 8a4e2f48bf
installation/pleroma-apache.conf: OCSP stapling needs to be outside of the virtualhost directive
6 years ago
shibayashi d027c53d75
Add frame-ancestors 'none' to all configs
6 years ago
shibayashi d035566116
installation/pleroma.nginx: Add 'always' to the security headers, so that they are included regardless of the status code
6 years ago
shibayashi 64388c420a
installation/pleroma-apache.conf: Add TLS configuration and security headers
6 years ago
shibayashi 3487e15963
installation/pleroma.vcl: Add HTTP security headers
6 years ago
shibayashi 82e661cd07
installation/caddyfile-pleroma.example: Add Content-Security-Policy
6 years ago
Haelwenn (lanodan) Monnier 0fd2eaf7af
installation/pleroma.nginx: Add Content-Security-Policy
6 years ago
shibayashi bff5ed154f
Improve example Caddyfile
6 years ago
vaartis 9c5ca9e15e Add an OpenRC service
6 years ago
Artik Banana 394d0c94c4 Add comment about TLS curves for older servers.
6 years ago
dex 750cfbf38d * fix nginx 1.15 warning:
6 years ago
Artik Banana 93c614bf13 * Removed TLSv1 and TLSv1.1
6 years ago
Artik Banana c645a8de2b Security upgrades:
6 years ago
witti 13925e0eb3 caddy config example
6 years ago
Dominik V. Salonen a6fd9c4b00 Update pleroma.nginx
6 years ago
Niklas Poslovski f0e8194a71 Repair some access-control headers required for third-party webclients
6 years ago
Niklas Poslovski d81a4e9280
Add access-control-expose-headers to Nginx default config
6 years ago
lambda bb864e96ad Merge branch 'patch-2' into 'develop'
6 years ago
lambda 17bcff6445 Merge branch 'feld-varnish' into 'develop'
6 years ago
Normandy 38f5f6f659 Remove alias directive in service file
6 years ago