[wp-trac] [WordPress Trac] #28520: Mechanism for sending an HSTS header
WordPress Trac
noreply at wordpress.org
Thu Jun 12 22:44:42 UTC 2014
#28520: Mechanism for sending an HSTS header
----------------------------+-----------------
Reporter: johnbillion | Owner:
Type: task (blessed) | Status: new
Priority: normal | Milestone: 4.0
Component: Security | Version:
Severity: normal | Keywords:
Focuses: |
----------------------------+-----------------
As per the comments on https://make.wordpress.org/core/2014/06/11/ssl-
taskforce/, we should introduce a new constant which enables sending an
[https://en.wikipedia.org/wiki/HTTP_Strict_Transport_Security HSTS]
header.
The value would act as the value of the `max-age` parameter in the header,
or would default to a sane value (probably one year) if it's set to
boolean true.
Patch coming up.
Related: #27954.
--
Ticket URL: <https://core.trac.wordpress.org/ticket/28520>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform
More information about the wp-trac
mailing list