From 5e993fbb2033a74e9a62b80e1401f7e67d18e333 Mon Sep 17 00:00:00 2001 From: "KHIYANI, RAHUL (rk0850)" Date: Wed, 23 Sep 2020 17:53:34 -0500 Subject: [PATCH] Add headers to nginx ingress containers Added X-XSS-Protection header to nginx ingress containers Enable X-Frame-Options DENY header in nginx Also Fix chart lint errors Change-Id: I2b696fffd13518aa9f423f6d8624a279726c60ca --- ranger-agent/Chart.yaml | 2 +- ranger-agent/values.yaml | 3 +++ ranger/Chart.yaml | 2 +- ranger/values.yaml | 3 +++ 4 files changed, 8 insertions(+), 2 deletions(-) diff --git a/ranger-agent/Chart.yaml b/ranger-agent/Chart.yaml index d79ac03a..2f64cb32 100644 --- a/ranger-agent/Chart.yaml +++ b/ranger-agent/Chart.yaml @@ -15,7 +15,7 @@ appVersion: v1.0.0 description: OpenStack-Helm Ranger Agent home: https://opendev.org/x/ranger-agent name: ranger-agent -version: 0.1.0 +version: 0.1.1 sources: - https://opendev.org/openstack/ranger-agent - https://opendev.org/openstack/openstack-helm diff --git a/ranger-agent/values.yaml b/ranger-agent/values.yaml index 9da48ddb..1702e2c9 100644 --- a/ranger-agent/values.yaml +++ b/ranger-agent/values.yaml @@ -141,6 +141,9 @@ network: cluster: "nginx-cluster" annotations: nginx.ingress.kubernetes.io/rewrite-target: / + nginx.ingress.kubernetes.io/configuration-snippet: | + more_set_headers "X-Frame-Options: deny"; + more_set_headers "X-XSS-Protection: 1; mode=block"; external_policy_local: false node_port: enabled: false diff --git a/ranger/Chart.yaml b/ranger/Chart.yaml index d4fc3767..76495041 100644 --- a/ranger/Chart.yaml +++ b/ranger/Chart.yaml @@ -15,7 +15,7 @@ appVersion: v1.0.0 description: OpenStack-Helm Ranger home: https://opendev.org/x/ranger name: ranger -version: 0.1.0 +version: 0.1.1 icon: https://opendev.org/x/ranger/raw/branch/master/public/images/logo.png sources: - https://opendev.org/openstack/ranger diff --git a/ranger/values.yaml b/ranger/values.yaml index da95bea5..fc2ddd91 100644 --- a/ranger/values.yaml +++ b/ranger/values.yaml @@ -642,6 +642,9 @@ network: cluster: "nginx-cluster" annotations: nginx.ingress.kubernetes.io/rewrite-target: / + nginx.ingress.kubernetes.io/configuration-snippet: | + more_set_headers "X-Frame-Options: deny"; + more_set_headers "X-XSS-Protection: 1; mode=block"; external_policy_local: false node_port: enabled: false