Add new reverse proxy configs for Mastodon #503

Closed
opened 2023-07-08 12:51:11 +00:00 by raucao · 0 comments
Owner

information_source The recommended configuration for reverse proxies has been updated. Unlike updating Mastodon itself, this is not urgent, but hardening. The change is about setting Content-Security-Policy: default-src 'none'; form-action 'none' and X-Content-Type-Options: nosniff on assets. Check dist/nginx.conf for more information, and the documentation if you are proxying external object storage.

https://github.com/mastodon/mastodon/releases/tag/v4.1.4

> information_source The recommended configuration for reverse proxies has been updated. Unlike updating Mastodon itself, this is not urgent, but hardening. The change is about setting Content-Security-Policy: default-src 'none'; form-action 'none' and X-Content-Type-Options: nosniff on assets. Check dist/nginx.conf for more information, and the documentation if you are proxying external object storage. https://github.com/mastodon/mastodon/releases/tag/v4.1.4
raucao added the
enhancement
service
mastodon
security
labels 2023-07-08 12:51:11 +00:00
raucao self-assigned this 2023-11-04 14:14:35 +00:00
Sign in to join this conversation.
No Milestone
No project
No Assignees
1 Participants
Notifications
Due Date
The due date is invalid or out of range. Please use the format 'yyyy-mm-dd'.

No due date set.

Dependencies

No dependencies set.

Reference: kosmos/chef#503
No description provided.