]> Frank Brehm's Git Trees - pixelpark/hiera.git/commitdiff
bkk-vbu - config changes
authorThomas Heller <thomas.heller@pixelpark.com>
Fri, 30 Sep 2016 08:37:41 +0000 (10:37 +0200)
committerThomas Heller <thomas.heller@pixelpark.com>
Fri, 30 Sep 2016 08:37:41 +0000 (10:37 +0200)
customer/bkk-vbu/dev-web01-meine-krankenkasse-de.pixelpark.net.yaml

index 09d0561d9f33eac9a5953c9f6398390e129e261e..e477b7f318ee39921bb0317b796fbe29e5442ef6 100644 (file)
@@ -45,6 +45,10 @@ site::profile::apache::pp_vhosts:
     redirect_dest_non_ssl: 'https://dev-web01-meine-krankenkasse-de.pixelpark.net/'
     headers:
       - 'set X-Content-Type-Options: nosniff'
+      - 'set X-XSS-Protection: 1; mode=block'
+      - 'set X-Frame-Options: DENY'
+      - "set Content-Security-Policy: \"default-src 'self'; img-src 'self' webstats.pixelpark.com data:; font-src 'self'; style-src 'self'; script-src 'self' webstats.pixelpark.com; frame-src 'self'; frame-ancestors 'self'\""
+      - "set X-Content-Security-Policy: \"default-src 'self'; img-src 'self' webstats.pixelpark.com data:; font-src 'self'; style-src 'self'; script-src 'self' webstats.pixelpark.com; frame-src 'self'; frame-ancestors 'self'\""
     headers_ssl:
       - 'always set Strict-Transport-Security "max-age=31556926"'
     custom_fragment: |
@@ -124,7 +128,7 @@ site::profile::apache::pp_vhosts:
 
 site::profile::typo3::projects:
   cms01:
-    version: '7.6.9'
+    version: '7.6.11'
     site_path: '/var/www/bkk-meine-krankenkasse'
     db_pass: '5PQQ3NC55JFP'
     db_user: bkk
@@ -135,17 +139,17 @@ site::profile::typo3::projects:
     ssl_key: '/etc/pki/tls/private/wildcard.pixelpark.net-key.pem'
     ssl_chain: '/etc/pki/tls/certs/wildcard.pixelpark.net-cert.pem'
 #   redirect_dest_non_ssl: 'https://dev-cms01-meine-krankenkasse-de.pixelpark.net/'
-    directories:
-      - location1:
-        provider: location
-        path: '/'
-        auth_type: Digest
-        auth_name: cms
-        auth_digest_provider: file
-        auth_digest_algorithm: MD5
-        auth_user_file: '/etc/httpd/htdigest'
-        auth_require: 'valid-user'
-        require: local
+#   directories:
+#      - location1:
+#        provider: location
+#        path: '/'
+#        auth_type: Digest
+#        auth_name: cms
+#        auth_digest_provider: file
+#        auth_digest_algorithm: MD5
+#        auth_user_file: '/etc/httpd/htdigest'
+#        auth_require: 'valid-user'
+#        require: local
     user: deploy.vogel
     mode: '2775'