Welcome! Log In Create A New Profile

Advanced

Re: Send Strict-Transport-Security header in 401 response

Francis Daly
June 19, 2016 05:58AM
On Sun, Jun 19, 2016 at 11:51:28AM +0200, Thomas Glanzmann wrote:

Hi there,

> I would like to send the header:
>
> add_header Strict-Transport-Security "max-age=31536000; includeSubDomains";
>
> Despite the 401 Unauthorized request. Is that possible?

http://nginx.org/r/add_header

That suggests that you can use an "always" parameter.

Is that appropriate in this case?

If not, then possibly the third-party "headers more" module may be useful.

f
--
Francis Daly francis@daoine.org

_______________________________________________
nginx mailing list
nginx@nginx.org
http://mailman.nginx.org/mailman/listinfo/nginx
Subject Author Posted

Send Strict-Transport-Security header in 401 response

Thomas Glanzmann June 19, 2016 05:52AM

Re: Send Strict-Transport-Security header in 401 response

Francis Daly June 19, 2016 05:58AM

Re: Send Strict-Transport-Security header in 401 response

Thomas Glanzmann June 22, 2016 08:56AM



Sorry, only registered users may post in this forum.

Click here to login

Online Users

Guests: 245
Record Number of Users: 8 on April 13, 2023
Record Number of Guests: 421 on December 02, 2018
Powered by nginx      Powered by FreeBSD      PHP Powered      Powered by MariaDB      ipv6 ready