From fbe9feec7d4f1af9b16b3f1dd46b14261c790a32 Mon Sep 17 00:00:00 2001 From: Erik Moeller Date: Mon, 5 Aug 2024 10:57:24 -0700 Subject: [PATCH] Address review comments - Tighten nginx headers a bit further - Add EXPOSE instruction - Fix license - Add filetypes - Cleanup markdown, YouTube link --- deploy/Dockerfile | 1 + deploy/nginx.conf | 3 ++- src/_layouts/base.njk | 4 +-- src/about.md | 63 ++++++++++++++++++++++--------------------- 4 files changed, 37 insertions(+), 34 deletions(-) diff --git a/deploy/Dockerfile b/deploy/Dockerfile index c7fd4d8..9702c61 100644 --- a/deploy/Dockerfile +++ b/deploy/Dockerfile @@ -15,3 +15,4 @@ RUN mkdir -p /opt/nginx/run /opt/nginx/webroot/assets && chown -R nginx:nginx /o USER nginx COPY --from=eleventy-build --chown=nginx:nginx /usr/src/page/dist /opt/nginx/webroot/ +EXPOSE 5080 diff --git a/deploy/nginx.conf b/deploy/nginx.conf index 20311fc..47e67af 100644 --- a/deploy/nginx.conf +++ b/deploy/nginx.conf @@ -28,6 +28,7 @@ http { add_header X-Frame-Options "DENY" always; add_header X-Content-Type-Options "nosniff" always; add_header X-XSS-Protection "1; mode=block" always; - add_header Referrer-Policy "same-origin" always; + add_header Referrer-Policy "strict-origin" always; + add_header Cross-Origin-Opener-Policy "same-origin" always; } } diff --git a/src/_layouts/base.njk b/src/_layouts/base.njk index 2e42e15..085a58d 100644 --- a/src/_layouts/base.njk +++ b/src/_layouts/base.njk @@ -47,13 +47,13 @@
- {{ content | safe }} + {{ content | safe | indent(4)}}