@@ -32,6 +32,7 @@ server {
3232 ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
3333 include /etc/letsencrypt/options-ssl -nginx.conf; # managed by Certbot
3434 ssl_dhparam /etc/letsencrypt/ssl -dhparams.pem; # managed by Certbot
35+ add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
3536
3637}
3738
@@ -69,7 +70,7 @@ server {
6970 ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
7071 include /etc/letsencrypt/options-ssl -nginx.conf; # managed by Certbot
7172 ssl_dhparam /etc/letsencrypt/ssl -dhparams.pem; # managed by Certbot
72-
73+ add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always ; # config to enable HSTS
7374}
7475
7576#
@@ -89,6 +90,7 @@ server {
8990 ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
9091 include /etc/letsencrypt/options-ssl -nginx.conf; # managed by Certbot
9192 ssl_dhparam /etc/letsencrypt/ssl -dhparams.pem; # managed by Certbot
93+ add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
9294
9395}
9496
@@ -110,6 +112,7 @@ server {
110112 ssl_certificate_key /etc/letsencrypt/live/api.rubyonrails.org/privkey.pem; # managed by Certbot
111113 include /etc/letsencrypt/options-ssl -nginx.conf; # managed by Certbot
112114 ssl_dhparam /etc/letsencrypt/ssl -dhparams.pem; # managed by Certbot
115+ add_header Strict-Transport-Security "max-age=63072000; includeSubdomains;" always; # config to enable HSTS
113116
114117}
115118
0 commit comments