Force CSP, X-Frame DENY, no-referrer

Added optional Strict-Transport-Security in _include.php
TODO: put them in ./rainloop/v/0.0.0/app/templates/Views/Admin/AdminSettingsSecurity.html
This commit is contained in:
djmaze
2020-08-06 14:33:50 +02:00
parent 327e6f65cd
commit 2f67fb2196
5 changed files with 24 additions and 21 deletions

View File

@@ -2,13 +2,16 @@
// Name this file as "include.php" to enable it.
//\header('Strict-Transport-Security: max-age=31536000');
/**
* @return string
*/
function __get_custom_data_full_path()
{
return '';
return '/var/external-rainloop-data-folder/'; // custom data folder path
return dirname(__DIR__) . '/rainloop-data';
return '/var/external-rainloop-data-folder'; // custom data folder path
}
/**
@@ -19,3 +22,4 @@ function __get_additional_configuration_name()
return '';
return defined('APP_SITE') && 0 < strlen(APP_SITE) ? APP_SITE.'.ini' : ''; // additional configuration file name
}