This commit is contained in:
Dallas Lu 2026-06-09 14:41:15 +08:00
parent c50569d73e
commit a624163120
No known key found for this signature in database
27 changed files with 215 additions and 6 deletions

View file

@ -1,5 +1,8 @@
set $hsts_header_value "";
# Keep the same HTTP/HTTPS guard as hsts.conf. The only difference is the
# preload token, which should be enabled only after the whole domain tree is
# known to be HTTPS-only.
if ($scheme = "https") {
set $hsts_header_value "max-age=31536000; includeSubDomains; preload";
}