Merge patch to enable HSTS on id.fp.o. #4991
Signed-off-by: Patrick Uiterwijk <puiterwijk@redhat.com>
This commit is contained in:
parent
a0cf3666ce
commit
7d179ed9dc
1 changed files with 6 additions and 0 deletions
|
@ -2,6 +2,12 @@ RequestHeader unset Expect early
|
||||||
RequestHeader set X-Forwarded-Scheme https early
|
RequestHeader set X-Forwarded-Scheme https early
|
||||||
RequestHeader set X-Forwarded-Proto https early
|
RequestHeader set X-Forwarded-Proto https early
|
||||||
|
|
||||||
|
# Cannot redirect to HTTPS for *.id.fedoraproject.org or set
|
||||||
|
# "includeSubdomains", because relying parties need to be able to access
|
||||||
|
# username.id.fedoraproject.org via plain HTTP
|
||||||
|
Header always add Strict-Transport-Security "max-age=15768000; preload"
|
||||||
|
|
||||||
|
|
||||||
RewriteEngine on
|
RewriteEngine on
|
||||||
|
|
||||||
RewriteMap lowercase int:tolower
|
RewriteMap lowercase int:tolower
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue