Browse Source

cmd/derper: increase HSTS cache lifetime to 2 years.

Fixes #3373.

Signed-off-by: David Anderson <[email protected]>
David Anderson 4 years ago
parent
commit
9a217ec841
1 changed files with 1 additions and 1 deletions
  1. 1 1
      cmd/derper/derper.go

+ 1 - 1
cmd/derper/derper.go

@@ -240,7 +240,7 @@ func main() {
 			// HSTS. Set it even though derper doesn't really serve
 			// anything of interest to browsers (and API clients like
 			// tailscale don't obey HSTS).
-			w.Header().Set("Strict-Transport-Security", "max-age=600; includeSubDomains")
+			w.Header().Set("Strict-Transport-Security", "max-age=63072000; includeSubDomains")
 			mux.ServeHTTP(w, r)
 		})
 		go func() {