Forum

Notifications
Clear all

HSTS on WebUI (Port 444)

2 Posts
2 Users
0 Reactions
52 Views
(@radiocooke)
Active Member
Joined: 2 months ago
Posts: 2
Topic starter  

Hello,

Is it possible to enable HSTS on the web UI (default port 444)? Our Nessus scanner is flagging the WebUI for not having HSTS and I have not found an option to enforce it. I suspect I could to it directly from Debian, but I wanted to check here first in case the direct method breaks things. 

Thanks,


   
Quote
emiliocm
(@emiliocm)
SKUDONET Engineer Moderator
Joined: 10 months ago
Posts: 54
 

Good day, HSTS is based in a Hedear replied by the server with a similar content as follow:

Strict-Transport-Security: max-age=31536000; includeSubDomains; preload

Currently we can't modify headers in our cherokee web server, modification headers plugin is not integrated, as soon we fix we will let you know. 

Regards!

 


   
ReplyQuote
Share:

Download Skudonet ADC Load Balancer
Community Edition

Source Code

A versatile and installable ADC system designed for diverse vendor hardware.

DOWNLOAD SOURCE

Installable ISO 

Load Balancing as a Service alongside an ADC orchestration toolkit.

DOWNLOAD ISO
Download Community Edition

Download Community Edition

“We manage the information you provide with the sole aim of assisting with your requests or queries in regards to our products or services; applying the computer and security procedures to ensure its protection. Your data can be rectified or removed upon request but won’t be offered to any third parties, unless we are legally required to do so.” Responsible: SKUDONET SL - info@skudonet.com