[PATCH 3/4] httpd: apply the same security headers on the captive portal instance as we do elsewhere