BBlack has submitted this change and it was merged.

Change subject: Enable HSTS on dev.wm.org max-age=7 days
......................................................................


Enable HSTS on dev.wm.org max-age=7 days

https://dev.wikimedia.org is already HTTPS only,
so let's enable HSTS.

Bug: T40516
Bug: T67074
Change-Id: I3c5a250f34b24b07269b658106c86a9eba60c494
---
M modules/devportal/templates/dev.wikimedia.org.erb
1 file changed, 1 insertion(+), 0 deletions(-)

Approvals:
  JanZerebecki: Looks good to me, but someone else must approve
  BBlack: Verified; Looks good to me, approved
  Dzahn: Looks good to me, but someone else must approve



diff --git a/modules/devportal/templates/dev.wikimedia.org.erb 
b/modules/devportal/templates/dev.wikimedia.org.erb
index 8e06760..106293c 100644
--- a/modules/devportal/templates/dev.wikimedia.org.erb
+++ b/modules/devportal/templates/dev.wikimedia.org.erb
@@ -15,6 +15,7 @@
     RewriteCond %{HTTP:X-Forwarded-Proto} !https
     RewriteRule ^/(.*)$ https://%{HTTP_HOST}%{REQUEST_URI} 
[R=301,E=ProtoRedirect]
     Header always merge Vary X-Forwarded-Proto
+    Header set Strict-Transport-Security "max-age=604800"
 
     <Directory />
         Order Deny,Allow

-- 
To view, visit https://gerrit.wikimedia.org/r/195338
To unsubscribe, visit https://gerrit.wikimedia.org/r/settings

Gerrit-MessageType: merged
Gerrit-Change-Id: I3c5a250f34b24b07269b658106c86a9eba60c494
Gerrit-PatchSet: 3
Gerrit-Project: operations/puppet
Gerrit-Branch: production
Gerrit-Owner: Chmarkine <[email protected]>
Gerrit-Reviewer: BBlack <[email protected]>
Gerrit-Reviewer: Dzahn <[email protected]>
Gerrit-Reviewer: JanZerebecki <[email protected]>
Gerrit-Reviewer: MZMcBride <[email protected]>
Gerrit-Reviewer: Nemo bis <[email protected]>
Gerrit-Reviewer: jenkins-bot <>

_______________________________________________
MediaWiki-commits mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/mediawiki-commits

Reply via email to