From 5df8a24c8482c7abeec64eb8b97058c576814bfc Mon Sep 17 00:00:00 2001 From: Maximilian <44269066+maxileith@users.noreply.github.com> Date: Mon, 26 Apr 2021 13:20:23 +0200 Subject: [PATCH] server_tokens off in default settings (#4073) Co-authored-by: Maximilian Leith --- data/conf/nginx/includes/site-defaults.conf | 2 ++ data/conf/nginx/site.conf | 1 - 2 files changed, 2 insertions(+), 1 deletion(-) diff --git a/data/conf/nginx/includes/site-defaults.conf b/data/conf/nginx/includes/site-defaults.conf index 34bd7256..ae4de7b8 100644 --- a/data/conf/nginx/includes/site-defaults.conf +++ b/data/conf/nginx/includes/site-defaults.conf @@ -3,6 +3,8 @@ charset utf-8; override_charset on; + server_tokens off; + ssl_protocols TLSv1.2 TLSv1.3; ssl_prefer_server_ciphers on; ssl_ciphers ECDHE-ECDSA-AES256-GCM-SHA384:ECDHE-RSA-AES256-GCM-SHA384:ECDHE-ECDSA-AES128-GCM-SHA256:ECDHE-RSA-AES128-GCM-SHA256:ECDHE-ECDSA-CHACHA20-POLY1305:ECDHE-RSA-CHACHA20-POLY1305; diff --git a/data/conf/nginx/site.conf b/data/conf/nginx/site.conf index d6e6b136..1b46d2b9 100644 --- a/data/conf/nginx/site.conf +++ b/data/conf/nginx/site.conf @@ -1,4 +1,3 @@ -server_tokens off; proxy_cache_path /tmp levels=1:2 keys_zone=sogo:10m inactive=24h max_size=1g; server_names_hash_bucket_size 64;