summaryrefslogtreecommitdiff
path: root/files/include.d/Debian/ssl_defaults.inc
diff options
context:
space:
mode:
authormh <mh@immerda.ch>2011-02-22 22:59:51 +0100
committermh <mh@immerda.ch>2011-02-22 22:59:51 +0100
commita371c169c45dbd14ad3c465f8b7314b14c4ed8cb (patch)
treec83e0e002cbe0e32193042552af2548d0ba81439 /files/include.d/Debian/ssl_defaults.inc
parentf14fd057987b5489228a40444c3a101768c5b6bb (diff)
add STS header in default ssl config
Diffstat (limited to 'files/include.d/Debian/ssl_defaults.inc')
-rw-r--r--files/include.d/Debian/ssl_defaults.inc3
1 files changed, 3 insertions, 0 deletions
diff --git a/files/include.d/Debian/ssl_defaults.inc b/files/include.d/Debian/ssl_defaults.inc
index 949fe58..d1ec68d 100644
--- a/files/include.d/Debian/ssl_defaults.inc
+++ b/files/include.d/Debian/ssl_defaults.inc
@@ -1,3 +1,6 @@
SSLProtocol -all +SSLv3 +TLSv1
SSLCipherSuite HIGH:MEDIUM:!aNULL:!SSLv2:!MD5:@STRENGTH
SSLHonorCipherOrder on
+
+# set STS Header
+Header add Strict-Transport-Security "max-age=15768000"