Server | nginx |
Content-Type | text/html; charset=windows-1251 |
Connection | keep-alive |
X-Powered-By | PHP/5.4.41 |
Expires | Sat, 03 Aug 2013 00:00:00 GMT |
Pragma | no-cache |
Last-Modified | Fri, 06 Nov 2015 09:49:51 GMT |
Cache-Control | no-store, no-cache, must-revalidate, post-check=0, pre-check=0 |
Content-Encoding | gzip |
Vary | Accept-Encoding |
X-Frame-Options | DENY, DENY |
X-Content-Type-Options | nosniff |
X-XSS-Protection | 1; mode=block |
Content-Security-Policy | report-uri //csp.merlion.ru:8080/report/428307387702970221/oklick/; connect-src 'self' rutube.ru www.google-analytics.com mc.yandex.ru https://mc.yandex.ru video.f1cd.ru; child-src 'none' ; font-src fonts.gstatic.com ; form-action 'self' ; frame-ancestors 'none' ; frame-src https://www.youtube.com awaps.yandex.ru yastatic.net video.f1cd.ru; img-src 'self' ferralabs.ru www.f1cd.ru *.maps.yandex.net support.ddix.ru www.merlion.com merlion.com img.merlion.ru yastatic.net mc.yandex.ru https://mc.yandex.ru api-maps.yandex.ru https://api-maps.yandex.ru www.google-analytics.com ; media-src 'none' ; object-src 'self' video.rutube.ru *.video.f1cd.ru video.f1cd.ru; script-src 'self' 'unsafe-eval' ajax.googleapis.com clck.yandex.ru mc.yandex.ru https://mc.yandex.ru www.google-analytics.com api-maps.yandex.ru https://api-maps.yandex.ru yastatic.net support.ddix.ru ; style-src 'self' 'unsafe-inline' fonts.googleapis.com support.ddix.ru ; default-src 'none' ; reflected-xss filter; referrer origin-when-cross-origin; |