diff --git a/conf.d/mail.shore.co.il.conf b/conf.d/mail.shore.co.il.conf index 3bd2e13908ebfc3b9dddd0d47464aba2166f8541..40bc1739fd1934f568f5db6d8f0303769808445a 100644 --- a/conf.d/mail.shore.co.il.conf +++ b/conf.d/mail.shore.co.il.conf @@ -19,6 +19,7 @@ server { # Copied from snippetes/ssl.conf. add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload"; + add_header Expect-CT "max-age=86400, enforce, report-uri=\"https://www.shore.co.il/about\""; include snippets/common-headers.conf; ssl_certificate /var/ssl/mail.crt; ssl_certificate_key /var/ssl/mail.key; diff --git a/snippets/ssl.conf b/snippets/ssl.conf index a209d98ed6463be9c30860a909a5d26cfe2a6999..8a0dd0ae088c2ad36ab4ce051e3e799c17430aee 100644 --- a/snippets/ssl.conf +++ b/snippets/ssl.conf @@ -1,4 +1,5 @@ add_header Strict-Transport-Security "max-age=31536000; includeSubDomains; preload"; +add_header Expect-CT "max-age=86400, enforce, report-uri=\"https://www.shore.co.il/about\""; include snippets/common-headers.conf; ssl_certificate /var/ssl/site.crt; ssl_certificate_key /var/ssl/site.key;