|
@@ -248,3 +248,48 @@ if os.environ.get("BASIC_AUTH_ENABLED", "false").lower().strip() == "true":
|
|
|
].split(",")
|
|
|
|
|
|
BASIC_AUTH_RESPONSE_TEMPLATE = "base/basic_auth.html"
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+SECURE_SSL_REDIRECT = True
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+SECURE_PROXY_SSL_HEADER = ("HTTP_X_FORWARDED_PROTO", "https")
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+DEFAULT_HSTS_SECONDS = 30 * 24 * 60 * 60
|
|
|
+SECURE_HSTS_SECONDS = int(
|
|
|
+ os.environ.get("SECURE_HSTS_SECONDS", DEFAULT_HSTS_SECONDS)
|
|
|
+)
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+SECURE_HSTS_INCLUDE_SUBDOMAINS = False
|
|
|
+
|
|
|
+
|
|
|
+SECURE_BROWSER_XSS_FILTER = True
|
|
|
+
|
|
|
+
|
|
|
+SECURE_CONTENT_TYPE_NOSNIFF = True
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+REFERRER_POLICY = os.environ.get(
|
|
|
+ "SECURE_REFERRER_POLICY", "no-referrer-when-downgrade"
|
|
|
+).strip()
|
|
|
+
|
|
|
+
|
|
|
+
|
|
|
+WAGTAIL_REDIRECTS_FILE_STORAGE = "cache"
|