From 8164e87052cfa2d4a2929a1d095222614c12b95e Mon Sep 17 00:00:00 2001 From: Guilhem Moulin Date: Fri, 1 Apr 2016 18:13:05 +0200 Subject: Set a HPKP on the webmail, website/wiki/git and list manager. --- roles/webmail/files/etc/nginx/sites-available/roundcube | 1 + 1 file changed, 1 insertion(+) (limited to 'roles/webmail/files/etc/nginx') diff --git a/roles/webmail/files/etc/nginx/sites-available/roundcube b/roles/webmail/files/etc/nginx/sites-available/roundcube index f4461ca..c66ec7a 100644 --- a/roles/webmail/files/etc/nginx/sites-available/roundcube +++ b/roles/webmail/files/etc/nginx/sites-available/roundcube @@ -33,6 +33,7 @@ server { include snippets/ssl.conf; ssl_certificate /etc/nginx/ssl/mail.fripost.org.pem; ssl_certificate_key /etc/nginx/ssl/mail.fripost.org.key; + add_header Public-Key-Pins 'pin-sha256="SHfniMEapxeYo5YT/2jP+n+WstNaYghDMhZUadLlPDk="; pin-sha256="/Tt92H3ZkfEW1/AOCoGVm1TxZl7u4c+tIBnuvAc7d5w="; max-age=15778800'; location = /favicon.ico { root /usr/share/roundcube/skins/default/images; -- cgit v1.2.3