Файловый менеджер - Редактировать - /home/avadvi5/public_html/wp-content/advanced-headers.php
Ðазад
<?php /** * This file is created by Really Simple Security */ if (defined("SHORTINIT") && SHORTINIT) return; $base_path = dirname(__FILE__); if( file_exists( $base_path . "/rsssl-safe-mode.lock" ) ) { if ( ! defined( "RSSSL_SAFE_MODE" ) ) { define( "RSSSL_SAFE_MODE", true ); } return; } if ( isset($_GET["rsssl_header_test"]) && (int) $_GET["rsssl_header_test"] === 390987889 ) return; if ( defined("RSSSL_HEADERS_ACTIVE" ) ) return; define( "RSSSL_HEADERS_ACTIVE", true ); if ( file_exists( "/home/avadvi5/public_html/wp-content/firewall.php" ) ) { require_once "/home/avadvi5/public_html/wp-content/firewall.php"; } //RULES START if ( !headers_sent() ) { if ( !function_exists("rsssl_is_ssl" ) ) { function rsssl_is_ssl() { if ( ( isset($_SERVER["HTTPS"]) && ("on" === $_SERVER["HTTPS"] || "1" === $_SERVER["HTTPS"]) ) || (isset($_ENV["HTTPS"]) && ("on" === $_ENV["HTTPS"])) || (isset($_SERVER["SERVER_PORT"]) && ( "443" === $_SERVER["SERVER_PORT"] ) ) || (isset($_SERVER["HTTP_X_FORWARDED_SSL"]) && (strpos($_SERVER["HTTP_X_FORWARDED_SSL"], "1") !== false)) || (isset($_SERVER["HTTP_X_FORWARDED_SSL"]) && (strpos($_SERVER["HTTP_X_FORWARDED_SSL"], "on") !== false)) || (isset($_SERVER["HTTP_CF_VISITOR"]) && (strpos($_SERVER["HTTP_CF_VISITOR"], "https") !== false)) || (isset($_SERVER["HTTP_CLOUDFRONT_FORWARDED_PROTO"]) && (strpos($_SERVER["HTTP_CLOUDFRONT_FORWARDED_PROTO"], "https") !== false)) || (isset($_SERVER["HTTP_X_FORWARDED_PROTO"]) && (strpos($_SERVER["HTTP_X_FORWARDED_PROTO"], "https") !== false)) || (isset($_SERVER["HTTP_X_PROTO"]) && (strpos($_SERVER["HTTP_X_PROTO"], "SSL") !== false)) ) { return true; } return false; } } if ( rsssl_is_ssl() ) header("Strict-Transport-Security: max-age=63072000; includeSubDomains;"); header("X-XSS-Protection: 0"); header("X-Content-Type-Options: nosniff"); header("Referrer-Policy: strict-origin-when-cross-origin"); header("Permissions-Policy: accelerometer=(self), autoplay=(self), camera=(self), encrypted-media=(self), fullscreen=(self), geolocation=(self), microphone=(self), midi=(self), payment=(self), display-capture=(self)"); header("X-Frame-Options: SAMEORIGIN"); header("Cross-Origin-Opener-Policy: same-origin-allow-popups"); header("Cross-Origin-Resource-Policy: same-origin"); header("Cross-Origin-Embedder-Policy: unsafe-none"); if (function_exists('header_remove')) { header_remove('X-Powered-By'); } else { header('X-Powered-By: '); } header("Content-Security-Policy: upgrade-insecure-requests;frame-ancestors 'self' ; "); header("Content-Security-Policy-Report-Only: img-src 'self' data: https://templates.underconstructionpage.com https://flytemplates.com https://aeronextgen.com https://api.wpmet.com https://updates.themepunch-ext-c.tools https://plugin.wpforms.com https://lh3.googleusercontent.com https://secure.gravatar.com https://ts.w.org https://s.w.org https://ps.w.org; default-src 'self'; script-src 'self' 'unsafe-inline' https://www.gstatic.com https://aeronextgen.com https://www.google.com https://www.googletagmanager.com https://cdn.jsdelivr.net blob: 'unsafe-eval'; script-src-elem 'self' 'unsafe-inline' https://www.gstatic.com https://aeronextgen.com https://www.google.com https://www.googletagmanager.com https://cdn.jsdelivr.net blob: ; style-src 'self' 'unsafe-inline' https://maxcdn.bootstrapcdn.com https://fonts.googleapis.com https://fonts.bunny.net https://aeronextgen.com https://code.jquery.com https://www.gstatic.com ; style-src-elem 'self' 'unsafe-inline' https://maxcdn.bootstrapcdn.com https://fonts.googleapis.com https://fonts.bunny.net https://aeronextgen.com https://code.jquery.com https://www.gstatic.com ; font-src 'self' https://fonts.bunny.net https://maxcdn.bootstrapcdn.com https://fonts.gstatic.com https://aeronextgen.com data:; frame-src 'self' https://www.google.com https://www.youtube.com blob:; connect-src 'self' https://templates.underconstructionpage.com https://aeronextgen.com https://www.google.com https://api-eu.mixpanel.com https://cdn.ampproject.org; worker-src 'self' blob:; report-uri https://aeronextgen.com/wp-json/rsssl/v1/csp?rsssl_apitoken=235514200;"); } //disable http methods $is_rest_request = isset($_SERVER["REQUEST_URI"]) && (strpos($_SERVER["REQUEST_URI"], "wp-json/")!==false || strpos($_SERVER["REQUEST_URI"], "rest_route=")!==false) && isset($_SERVER["HTTP_X_WP_NONCE"]); $is_rest_request = $is_rest_request || isset($_SERVER["REQUEST_URI"]) && strpos($_SERVER["REQUEST_URI"], "admin-ajax.php")!==false; if ( !$is_rest_request ) { $current_method = isset($_SERVER["REQUEST_METHOD"]) ? $_SERVER["REQUEST_METHOD"]: false; if( !in_array($current_method, ["GET", "POST", "HEAD", "OPTIONS"]) ){ $serverProtocol = isset($_SERVER["SERVER_PROTOCOL"]) ? $_SERVER["SERVER_PROTOCOL"] : "HTTP/1.1"; header($serverProtocol." 405 Method Not Allowed", true, 405); exit; } }
| ver. 1.1 | |
.
| PHP 8.3.30 | Ð“ÐµÐ½ÐµÑ€Ð°Ñ†Ð¸Ñ Ñтраницы: 0 |
proxy
|
phpinfo
|
ÐаÑтройка