# The "Referrer-Policy" HTTP header is not set to "no-referrer"

**URL:** <https://help.nextcloud.com/t/the-referrer-policy-http-header-is-not-set-to-no-referrer/36613>\
**Category:** ℹ️ Support\
**Tags:** update\_problems, nc14\
**Created:** [September 11, 2018, 3:01am UTC](https://help.nextcloud.com/t/the-referrer-policy-http-header-is-not-set-to-no-referrer/36613 "2018-09-11T03:01:21Z")\
**Posts on this page:** 1\
**Showing post:** 43

<div class="post-metadata">

**Author:** ![voidoid3](https://help.nextcloud.com/letter_avatar/voidoid3/32/5_5575768a8748004e209b776fc1b2916d.png) [@voidoid3](https://help.nextcloud.com/u/voidoid3)\
**Post date:** [November 23, 2018, 3:04am UTC](https://help.nextcloud.com/t/the-referrer-policy-http-header-is-not-set-to-no-referrer/36613/43 "2018-11-23T03:04:04Z")

</div>

So that I can remember for the future, here is what I did to correct this problem (I am running Ubuntu 16.04):

1. In /var/www/html/nextcloud/.htacess, I commented out: Header set Referrer-Policy "no-referrer"

2. In /etc/apache2/apache2.conf, I have the following:

\<IfModule mod\_headers.c\>

Header always add Strict-Transport-Security "max-age=15768000; includeSubDomains; preload"

Header always set Referrer-Policy "no referrer"

Header always set Referrer-Policy "strict-origin"

\</IfModule\>

This removes the warning.

I hope that this is helpful to someone.

---

_[View the full topic](https://help.nextcloud.com/t/the-referrer-policy-http-header-is-not-set-to-no-referrer/36613)._
