No description, website, or topics provided.
Switch branches/tags
Nothing to show
Clone or download
Fetching latest commit…
Cannot retrieve the latest commit at this time.
Failed to load latest commit information.
app ready implemented Nov 7, 2012 first commit Nov 3, 2012
composer.json Update composer.json Apr 6, 2018
modman not ready yet, but backup on github is always a good idea! Nov 4, 2012

Strict Transport Security

STS is a HTTP header which can be set.

In short: use always SSL, if no SSL is available abort the connection.

Changes for magento

  • Check wether both secure and unsecure url are https.
  • Add a Strict Transport Security Header to magento.

Goal of this extention

You know what sidejacking and SSLStrip is? This should help a bit against it.