--- a/roles/nginx/templates/etc/nginx/sites-available/munin Sat Jun 25 12:27:42 2016 +0800
+++ b/roles/nginx/templates/etc/nginx/sites-available/munin Sat Jun 25 12:28:29 2016 +0800
# HSTS: 31536000 = 365 days (set to 0 to expire and allow plain HTTP)
add_header Strict-Transport-Security 'max-age=31536000';
- # Content-Security-Policy-Report-Only: default-src https:; script-src https: 'unsafe-eval' 'unsafe-inline'; style-src https: 'unsafe-inline'; img-src https: data:; font-src https: data:; report-uri /csp-report
add_header Cache-Control private;
access_log /var/log/nginx/munin.{{ hostname }}.access.log;