summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorGene Wood <gene_wood@cementhorizon.com>2014-11-18 10:19:59 -0800
committerGene Wood <gene_wood@cementhorizon.com>2014-11-18 10:19:59 -0800
commite64d1cc3a73ccd9cd857ce605e00afb658bd672a (patch)
tree608d2cf2065d8a8dfe05a04d84b39160370ea720
parent0a34457d2e07f44bfaff4f14050942ff1bfca261 (diff)
downloadserver-side-tls-e64d1cc3a73ccd9cd857ce605e00afb658bd672a.zip
server-side-tls-e64d1cc3a73ccd9cd857ce605e00afb658bd672a.tar.gz
server-side-tls-e64d1cc3a73ccd9cd857ce605e00afb658bd672a.tar.bz2
Setting HSTS, when enabled, to always serve the header under Apache, even in error pages and redirects.
Resolves #16
-rw-r--r--ssl-config-generator/index.html2
1 files changed, 1 insertions, 1 deletions
diff --git a/ssl-config-generator/index.html b/ssl-config-generator/index.html
index f3e9ce2..9a332b6 100644
--- a/ssl-config-generator/index.html
+++ b/ssl-config-generator/index.html
@@ -179,7 +179,7 @@ frontend ft_test
}
if (data.hstsEnabled == "true") {
data.hsts = '\n # HSTS (mod_headers is required) (15768000 seconds = 6 months)' + '\n' +
- ' Header add Strict-Transport-Security "max-age=15768000"'
+ ' Header always add Strict-Transport-Security "max-age=15768000"'
}
break;
case "haproxy":