http: middlewares: secure-headers: headers: frameDeny: true contentTypeNosniff: true browserXssFilter: true forceSTSHeader: true stsSeconds: 31536000 stsIncludeSubdomains: true stsPreload: true