@@ -268,6 +268,7 @@ See https://docs.aws.amazon.com/AmazonCloudFront/latest/DeveloperGuide/adding-re
268268
269269``` ts
270270// Using an existing managed response headers policy
271+ declare const bucketOrigin: origins .S3Origin ;
271272new cloudfront .Distribution (this , ' myDistManagedPolicy' , {
272273 defaultBehavior: {
273274 origin: bucketOrigin ,
@@ -297,16 +298,15 @@ const myResponseHeadersPolicy = new cloudfront.ResponseHeadersPolicy(this, 'Resp
297298 securityHeadersBehavior: {
298299 contentSecurityPolicy: { contentSecurityPolicy: ' default-src https:;' , override: true },
299300 contentTypeOptions: { override: true },
300- frameOptions: { frameOption: HeadersFrameOption .DENY , override: true },
301- referrerPolicy: { referrerPolicy: HeadersReferrerPolicy .NO_REFERRER , override: true },
301+ frameOptions: { frameOption: cloudfront . HeadersFrameOption .DENY , override: true },
302+ referrerPolicy: { referrerPolicy: cloudfront . HeadersReferrerPolicy .NO_REFERRER , override: true },
302303 strictTransportSecurity: { accessControlMaxAge: Duration .seconds (600 ), includeSubdomains: true , override: true },
303304 xssProtection: { protection: true , modeBlock: true , reportUri: ' https://example.com/csp-report' , override: true },
304305 },
305306});
306307new cloudfront .Distribution (this , ' myDistCustomPolicy' , {
307308 defaultBehavior: {
308309 origin: bucketOrigin ,
309- cachePolicy: myCachePolicy ,
310310 responseHeadersPolicy: myResponseHeadersPolicy ,
311311 },
312312});
0 commit comments