diff --git a/src/js/helpers/traefik.js b/src/js/helpers/traefik.js index 6b39b382..022c4db7 100644 --- a/src/js/helpers/traefik.js +++ b/src/js/helpers/traefik.js @@ -42,8 +42,12 @@ export default (form, output) => { ' [http.middlewares.redirect-to-https.redirectScheme]\n'+ ' scheme = "https"\n'+ ' [http.middlewares.hsts-header.headers]\n'+ - ' [http.middlewares.hsts-header.headers.customResponseHeaders]\n'+ - ' Strict-Transport-Security = "max-age='+output.hstsMaxAge+'"\n'; + ' stsSeconds = '+output.hstsMaxAge+'\n'; + ' # Depending on your configuration you might want to also enable "includeSubDomains"\n'; + ' # and "preload". More infos about these directives can be found at\n'; + ' # https://infosec.mozilla.org/guidelines/web_security#http-strict-transport-security\n'; + ' #stsIncludeSubdomains = true\n'; + ' #stsPreload = true\n'; } conf +=