From fcb786f4ffd690c32393ab5f3a3789a3dd83f36e Mon Sep 17 00:00:00 2001 From: Jeff Fredrickson Date: Wed, 5 Apr 2023 22:29:08 -0600 Subject: [PATCH 1/2] match X-Robots-Tag recommendation in Nextcloud docs Signed-off-by: Jeff Fredrickson --- charts/nextcloud/templates/nginx-config.yaml | 14 +++++++------- 1 file changed, 7 insertions(+), 7 deletions(-) diff --git a/charts/nextcloud/templates/nginx-config.yaml b/charts/nextcloud/templates/nginx-config.yaml index 0fae957c..bb96b94c 100644 --- a/charts/nextcloud/templates/nginx-config.yaml +++ b/charts/nextcloud/templates/nginx-config.yaml @@ -71,13 +71,13 @@ data: #pagespeed off; # HTTP response headers borrowed from Nextcloud `.htaccess` - add_header Referrer-Policy "no-referrer" always; - add_header X-Content-Type-Options "nosniff" always; - add_header X-Download-Options "noopen" always; - add_header X-Frame-Options "SAMEORIGIN" always; - add_header X-Permitted-Cross-Domain-Policies "none" always; - add_header X-Robots-Tag "none" always; - add_header X-XSS-Protection "1; mode=block" always; + add_header Referrer-Policy "no-referrer" always; + add_header X-Content-Type-Options "nosniff" always; + add_header X-Download-Options "noopen" always; + add_header X-Frame-Options "SAMEORIGIN" always; + add_header X-Permitted-Cross-Domain-Policies "none" always; + add_header X-Robots-Tag "noindex, nofollow" always; + add_header X-XSS-Protection "1; mode=block" always; # Remove X-Powered-By, which is an information leak fastcgi_hide_header X-Powered-By; From 9f10d65389f4ebfb9971e8dd5af85c2fb510dbf8 Mon Sep 17 00:00:00 2001 From: Jeff Fredrickson Date: Wed, 5 Apr 2023 22:40:35 -0600 Subject: [PATCH 2/2] bump Chart version Signed-off-by: Jeff Fredrickson --- charts/nextcloud/Chart.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/charts/nextcloud/Chart.yaml b/charts/nextcloud/Chart.yaml index 476ad641..5078b67b 100644 --- a/charts/nextcloud/Chart.yaml +++ b/charts/nextcloud/Chart.yaml @@ -1,6 +1,6 @@ apiVersion: v2 name: nextcloud -version: 3.5.4 +version: 3.5.5 appVersion: 26.0.0 description: A file sharing server that puts the control and security of your own data back into your hands. keywords: