Server | nginx/1.8.0 |
Content-Type | text/html; charset=UTF-8 |
Connection | keep-alive |
X-Powered-By | dbpager 3.0.17 (Apache module) |
Vary | Accept-Encoding |
Content-Encoding | gzip |
Expires | Sun, 08 Nov 2015 11:54:43 GMT |
Cache-Control | max-age=86400 |
X-Frame-Options | SAMEORIGIN |
X-Content-Type-Options | nosniff |
X-XSS-Protection | 1; mode=block |
Access-Control-Allow-Origin | http://mc.yandex.ru https://mc.yandex.ru |
Content-Security-Policy | default-src 'self' *.yandex.ru https://awaps.yandex.ru; script-src 'self' 'unsafe-inline' 'unsafe-eval' yandex.st https://yandex.ru https://awaps.yandex.ru *.yandex.ru *.google.com https://www.google.com *.googleapis.com https://ajax.googleapis.com https://site.yandex.net *.yandex.net https://yastatic.net yastatic.net *.googlesyndication.com *.gstatic.com userapi.com https://userapi.com; object-src https://www.youtube.com *.youtube.com *.googlevideo.com *.ytimg.com *.vimeo.com vk.com https://an.yandex.ru *.yandex.ru https://awaps.yandex.ru https://streaming.video.yandex.ru *.yandex.net *.macromedia.com; style-src 'self' 'unsafe-inline' *.googleapis.com *.gstatic.com https://www.google.com *.google.com https://yastatic.net; img-src * data:; media-src *; frame-src 'self' https://www.youtube.com *.youtube.com *.googlevideo.com *.google.com *.ytimg.com *.vimeo.com vk.com https://vk.com https://an.yandex.ru *.yandex.ru *.yandex.net yandexadexchange.net *.doubleclick.net https://*.doubleclick.net; font-src * |