[wp-trac] [WordPress Trac] #28520: Mechanism for sending an HSTS header

WordPress Trac noreply at wordpress.org
Thu Jun 12 22:44:42 UTC 2014


#28520: Mechanism for sending an HSTS header
----------------------------+-----------------
 Reporter:  johnbillion     |      Owner:
     Type:  task (blessed)  |     Status:  new
 Priority:  normal          |  Milestone:  4.0
Component:  Security        |    Version:
 Severity:  normal          |   Keywords:
  Focuses:                  |
----------------------------+-----------------
 As per the comments on https://make.wordpress.org/core/2014/06/11/ssl-
 taskforce/, we should introduce a new constant which enables sending an
 [https://en.wikipedia.org/wiki/HTTP_Strict_Transport_Security HSTS]
 header.

 The value would act as the value of the `max-age` parameter in the header,
 or would default to a sane value (probably one year) if it's set to
 boolean true.

 Patch coming up.

 Related: #27954.

--
Ticket URL: <https://core.trac.wordpress.org/ticket/28520>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list