In my configuration, I am using Apache to reverse proxy the requests to a 
uwsgi. After our security office scanned the server, it was shown that HSTS is 
missing from the HTTPS server. The instructions say to add some lines to 
/etc/apache2/sites-enabled/. The only file in there is 000-default.conf that 
holds the configuration, but the VirtualHost is port 80. I am using an F5 to to 
automatically redirect port 80 to port 443, but it is still showing this 
vulnerability.

My question is, how can enable the Virtual Host for 443 on the server? Or can 
that configuration be located somewhere else? Or can I just create a new 
Virtual Host with the added configuration for mailman?

Thanks,
Joe Koral
_______________________________________________
Mailman-users mailing list -- mailman-users@mailman3.org
To unsubscribe send an email to mailman-users-le...@mailman3.org
https://lists.mailman3.org/mailman3/lists/mailman-users.mailman3.org/
Archived at: 
https://lists.mailman3.org/archives/list/mailman-users@mailman3.org/message/YXFF3YLJ3CEZJ7ID46ORZY4HB7CX7KD2/

This message sent to arch...@mail-archive.com

Reply via email to