Rietveld Code Review Tool
Help | Bug tracker | Discussion group | Source code

Side by Side Diff: modules/web/templates/adblockplus.org.conf.erb

Issue 5330257947131904: Issue 2568 - Missing images on blog (Closed)
Patch Set: Created May 26, 2015, 11:09 a.m.
Left:
Right:
Use n/p to move between diff chunks; N/P to move between comments.
Jump to:
View unified diff | Download patch
« no previous file with comments | « no previous file | no next file » | no next file with comments »
Toggle Intra-line Diffs ('i') | Expand Comments ('e') | Collapse Comments ('c') | Show Comments Hide Comments ('s')
OLDNEW
1 # XSS and clickjacking prevention headers 1 # XSS and clickjacking prevention headers
2 2
3 set $csp_frame ""; 3 set $csp_frame "";
4 if ($uri ~ ^/(:?\w\w(_\w\w)?/)?(?:index|firefox|chrome|opera|android|internet-ex plorer|safari|yandex-browser|maxthon)?$) 4 if ($uri ~ ^/(:?\w\w(_\w\w)?/)?(?:index|firefox|chrome|opera|android|internet-ex plorer|safari|yandex-browser|maxthon)?$)
5 { 5 {
6 set $csp_frame "; frame-src www.youtube-nocookie.com;"; 6 set $csp_frame "; frame-src www.youtube-nocookie.com;";
7 } 7 }
8 add_header Content-Security-Policy "default-src 'self'; img-src * data:; style-s rc 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' 'unsafe-eval' $csp_ frame"; 8 add_header Content-Security-Policy "default-src 'self'; img-src * data:; style-s rc 'self' 'unsafe-inline'; script-src 'self' 'unsafe-inline' 'unsafe-eval' $csp_ frame";
9 add_header X-Frame-Options "sameorigin"; 9 add_header X-Frame-Options "sameorigin";
10 10
(...skipping 171 matching lines...) Expand 10 before | Expand all | Expand 10 after
182 rewrite ^ /$lang/$link$anchor? redirect; 182 rewrite ^ /$lang/$link$anchor? redirect;
183 } 183 }
184 184
185 location /devbuilds 185 location /devbuilds
186 { 186 {
187 rewrite ^(.*) https://downloads.adblockplus.org$1; 187 rewrite ^(.*) https://downloads.adblockplus.org$1;
188 } 188 }
189 189
190 # Locations still served by the legacy server 190 # Locations still served by the legacy server
191 191
192 location ~ ^(/blog|/releases|/development-builds|/atom|/rss|/category|/section|/ author|/file_download|/textpattern|/default-static|/_override-static)($|/) 192 location ~ ^(/blog|/releases|/development-builds|/atom|/rss|/category|/section|/ author|/file_download|/images|/textpattern|/default-static|/_override-static)($| /)
193 { 193 {
194 try_files $uri @proxied; 194 try_files $uri @proxied;
195 } 195 }
196 location /submitEmail 196 location /submitEmail
197 { 197 {
198 try_files $uri @proxied; 198 try_files $uri @proxied;
199 } 199 }
200 location /verifyEmail 200 location /verifyEmail
201 { 201 {
202 try_files $uri @proxied; 202 try_files $uri @proxied;
(...skipping 24 matching lines...) Expand all
227 } 227 }
228 location @proxied 228 location @proxied
229 { 229 {
230 proxy_pass https://server_16.adblockplus.org; 230 proxy_pass https://server_16.adblockplus.org;
231 proxy_set_header Host adblockplus.org; 231 proxy_set_header Host adblockplus.org;
232 proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for; 232 proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
233 proxy_redirect https://adblockplus.org/ https://$host/; 233 proxy_redirect https://adblockplus.org/ https://$host/;
234 sub_filter_once off; 234 sub_filter_once off;
235 sub_filter https://adblockplus.org/ https://$host/; 235 sub_filter https://adblockplus.org/ https://$host/;
236 } 236 }
OLDNEW
« no previous file with comments | « no previous file | no next file » | no next file with comments »

Powered by Google App Engine
This is Rietveld