diff --git a/roles/docker-wordpress/vars/configuration.yml b/roles/docker-wordpress/vars/configuration.yml index 3a89206b..cdb3d999 100644 --- a/roles/docker-wordpress/vars/configuration.yml +++ b/roles/docker-wordpress/vars/configuration.yml @@ -30,4 +30,4 @@ csp: - "data:" script-src: - "https://cdn.gtranslate.net" - - "{{ domains[application_id] }}" \ No newline at end of file + - "{{ domains.wordpress }}" \ No newline at end of file diff --git a/roles/nginx-docker-reverse-proxy/Todo.md b/roles/nginx-docker-reverse-proxy/Todo.md index 92f9149f..f759c981 100644 --- a/roles/nginx-docker-reverse-proxy/Todo.md +++ b/roles/nginx-docker-reverse-proxy/Todo.md @@ -1,3 +1,4 @@ # Todos - Optimize buffering - Optimize caching +- Make 'proxy_hide_header Content-Security-Policy' optional by using more_header option. See [ChatGPT Conversation](https://chatgpt.com/share/6825cb39-8db8-800f-8886-0cebdfad575a) diff --git a/roles/nginx-docker-reverse-proxy/templates/headers/content_security_policy.conf.j2 b/roles/nginx-docker-reverse-proxy/templates/headers/content_security_policy.conf.j2 index 9df1a5d3..d29e5170 100644 --- a/roles/nginx-docker-reverse-proxy/templates/headers/content_security_policy.conf.j2 +++ b/roles/nginx-docker-reverse-proxy/templates/headers/content_security_policy.conf.j2 @@ -1,2 +1,2 @@ add_header Content-Security-Policy "{{ applications | build_csp_header(application_id, domains) }}" always; -proxy_hide_header Content-Security-Policy; \ No newline at end of file +proxy_hide_header Content-Security-Policy; # Todo: Make this optional \ No newline at end of file