Server | nginx/1.8.0 |
Content-Type | text/html; charset=utf-8 |
Connection | keep-alive |
Keep-Alive | timeout=15 |
X-Content-Type-Options | nosniff |
Content-Language | fi |
Cache-Control | public, max-age=900 |
Last-Modified | Sat, 07 Nov 2015 12:35:42 GMT |
Expires | Sun, 19 Nov 1978 05:00:00 GMT |
Vary | Cookie, Accept-Encoding |
Content-Encoding | gzip |
X-Micro-Cache | EXPIRED |
X-Origin | nginx - 127.0.0.1 |
X-Varnish | 12094566 12094449 |
Age | 101 |
Via | 1.1 varnish-v4 |
X-Varnish-Cache | HIT |
X-Varnish-Instance | gliese-667cc |
X-Varnish-Cache-Hits | 2 |
grace | none |
Accept-Ranges | bytes |
Strict-Transport-Security | max-age=31536000; |
Access-Control-Allow-Origin | * |
Content-Security-Policy | default-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; object-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; script-src 'self' data: 'unsafe-inline' 'unsafe-eval' https://*.addthis.com https://*.googletagmanager.com https://*.google-analytics.com https://*.facebook.com https://*.facebook.net https://*.twitter.com https://*.nr-data.net https://*.newrelic.com https://*.gstatic.com https://*.twimg.com https://*.googleapis.com https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; style-src 'self' data: 'unsafe-inline' https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.addthis.com https://*.twitter.com https://*.facebook.com https://*.gstatic.com https://*.googleapis.com; img-src data: 'unsafe-inline' *; media-src data: 'unsafe-inline' *; frame-src 'self' data: https://*.addthis.com https://*.youtube.com https://*.facebook.com https://*.twitter.com https://*.vimeo.com https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.slideshare.net https://embed.bambuser.com; font-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.gstatic.com https://*.googleapis.com; connect-src 'self' https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi |
X-Content-Security-Policy | default-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; object-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; script-src 'self' data: 'unsafe-inline' 'unsafe-eval' https://*.addthis.com https://*.googletagmanager.com https://*.google-analytics.com https://*.facebook.com https://*.facebook.net https://*.twitter.com https://*.nr-data.net https://*.newrelic.com https://*.gstatic.com https://*.twimg.com https://*.googleapis.com https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; style-src 'self' data: 'unsafe-inline' https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.addthis.com https://*.twitter.com https://*.facebook.com https://*.gstatic.com https://*.googleapis.com; img-src data: 'unsafe-inline' *; media-src data: 'unsafe-inline' *; frame-src 'self' data: https://*.addthis.com https://*.youtube.com https://*.facebook.com https://*.twitter.com https://*.vimeo.com https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.slideshare.net https://embed.bambuser.com; font-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.gstatic.com https://*.googleapis.com; connect-src 'self' https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi |
X-WebKit-CSP | default-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; object-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; script-src 'self' data: 'unsafe-inline' 'unsafe-eval' https://*.addthis.com https://*.googletagmanager.com https://*.google-analytics.com https://*.facebook.com https://*.facebook.net https://*.twitter.com https://*.nr-data.net https://*.newrelic.com https://*.gstatic.com https://*.twimg.com https://*.googleapis.com https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi; style-src 'self' data: 'unsafe-inline' https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.addthis.com https://*.twitter.com https://*.facebook.com https://*.gstatic.com https://*.googleapis.com; img-src data: 'unsafe-inline' *; media-src data: 'unsafe-inline' *; frame-src 'self' data: https://*.addthis.com https://*.youtube.com https://*.facebook.com https://*.twitter.com https://*.vimeo.com https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.slideshare.net https://embed.bambuser.com; font-src 'self' data: https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi https://*.gstatic.com https://*.googleapis.com; connect-src 'self' https://*.vihreat.fi https://*.degrona.fi https://*.greens.fi |
X-XSS-Protection | 0 |