/
Secure Foray ADAMS® Web Applications with HSTS
Secure Foray ADAMS® Web Applications with HSTS
HTTP Strict-Transport-Security (aka HSTS) can be enabled for IIS web sites. This will causes the client’s browser, after an initial connection, to only use HTTPS.
IIS Manager > <Server> > Sites > Default Web Site
HSTS… (under Configure on the far right)
Enable
Max-Age - 63072000 (2 year)
Redirect Http to Https
OK
Preload is optional and requires that the site be external and must be submitted to Google for inclusion in the HSTS preload list.
© 2023 Foray, LLC - All Rights Reserved