diff --git a/roles/nginx/application/tasks/main.yml b/roles/nginx/application/tasks/main.yml index 06954fa..3af5375 100644 --- a/roles/nginx/application/tasks/main.yml +++ b/roles/nginx/application/tasks/main.yml @@ -27,9 +27,9 @@ - "{{ nginx_validation_directory }}" - name: Upload snippets to nginx - copy: + template: src: "{{ item }}.conf" - dest: "{{ nginx_snippets_directory }}/{{ item }}.conf" + dest: "{{ nginx_snippets_directory }}/{{ item }}" owner: root group: root mode: "u=rw,g=r,o=r" diff --git a/roles/nginx/application/templates/https.conf b/roles/nginx/application/templates/https.conf index b57e2d4..1b3e7b5 100644 --- a/roles/nginx/application/templates/https.conf +++ b/roles/nginx/application/templates/https.conf @@ -1,3 +1,3 @@ -include {{ nginx_snippets_directory }}/ssl.conf; +include {{ nginx_snippets_directory }}/ssl; add_header Strict-Transport-Security 'max-age=15768000; includeSubDomains; preload;'; # default max age: 2592000 = 30 * 24 * 60 * 60s add_header 'Referrer-Policy' 'same-origin';