-
Feature Request
-
Resolution: Won't Do
-
Normal
-
2.1, 2.2, 2.3
-
None
-
False
-
-
False
- What is the nature and description of the request?
- HSTS is set to 6 months only
- Why does the customer need this? (List the business requirements here)
- Security requirements and best practice suggest to extend it to 1 or 2 years (for example https://ssl-config.mozilla.org/#server=nginx&version=1.20.1&config=intermediate&openssl=1.1.1k&guideline=5.6)
- How would you like to achieve this? (List the functional requirements here)
- Change configuration in automation-controller.nginx.conf from add_header Strict-Transport-Security max-age=15768000; to add_header Strict-Transport-Security max-age=63072000;
- List any affected known dependencies: Doc, UI etc..
- N/A
- Github Link if any
- N/A
- is related to
-
AAPRFE-230 Prolong HSTS
- Closed
- mentioned on