Skip to content

Commit bf7fab6

Browse files
authored
Merge pull request #9 from RahulMahale/Enable-HSTS-config-in-nginx
Add HSTS header config in nginx
2 parents f62ec33 + 0483b29 commit bf7fab6

File tree

1 file changed

+4
-1
lines changed

1 file changed

+4
-1
lines changed

config/nginx.conf

+4-1
Original file line numberDiff line numberDiff line change
@@ -32,6 +32,7 @@ server {
3232
ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
3333
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
3434
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
35+
add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
3536

3637
}
3738

@@ -69,7 +70,7 @@ server {
6970
ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
7071
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
7172
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
72-
73+
add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
7374
}
7475

7576
#
@@ -89,6 +90,7 @@ server {
8990
ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
9091
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
9192
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
93+
add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
9294

9395
}
9496

@@ -110,6 +112,7 @@ server {
110112
ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
111113
include /etc/letsencrypt/options-ssl-nginx.conf; # managed by Certbot
112114
ssl_dhparam /etc/letsencrypt/ssl-dhparams.pem; # managed by Certbot
115+
add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
113116

114117
}
115118

0 commit comments

Comments
 (0)