Jump to content

Apache:HSTS Header: Difference between revisions

From Wiki
Created page with " <VirtualHost *:443> ServerAdmin support@example.com ServerName www.example.com SSLEngine on SSLCertificateFile /path/to/www.example.com.cert SSLCertificateKeyFile /path/to/www.example.com.key […] <span style="color:#ff0000">Header always set Strict-Transport-Security "max-age=31536000 ; includeSubdomains;"</span> DocumentRoot /var/www/ </VirtualHost> ==Source== *[https://blog.matrixpost.net/using-http-strict-transport-security..."
 
No edit summary
Line 6: Line 6:
     SSLCertificateKeyFile /path/to/www.example.com.key
     SSLCertificateKeyFile /path/to/www.example.com.key
     […]
     […]
     <span style="color:#ff0000">Header always set Strict-Transport-Security "max-age=31536000 ; includeSubdomains;"</span>
     <span style="color:#ff0000">Header always set Strict-Transport-Security "max-age=31536000 ; includeSubdomains; preload"</span>
     DocumentRoot /var/www/
     DocumentRoot /var/www/
  </VirtualHost>
  </VirtualHost>

Revision as of 20:13, 1 March 2022

<VirtualHost *:443>
    ServerAdmin support@example.com
    ServerName www.example.com
    SSLEngine on
    SSLCertificateFile /path/to/www.example.com.cert
    SSLCertificateKeyFile /path/to/www.example.com.key
    […]
    Header always set Strict-Transport-Security "max-age=31536000 ; includeSubdomains; preload"
    DocumentRoot /var/www/
</VirtualHost>

Source