diff --git a/CHANGES b/CHANGES index 14757ee9d..7ce55c4be 100644 --- a/CHANGES +++ b/CHANGES @@ -2618,4 +2618,5 @@ [7.4.1] * support: Fix issue where app support tickets could not be opened +* reverseproxy: prevent duplication of STS header diff --git a/src/nginxconfig.ejs b/src/nginxconfig.ejs index 29c74681e..6c1de1e07 100644 --- a/src/nginxconfig.ejs +++ b/src/nginxconfig.ejs @@ -96,6 +96,7 @@ server { ssl_dhparam /home/yellowtent/platformdata/dhparams.pem; <% } -%> + proxy_hide_header Strict-Transport-Security; <% if (hstsPreload) { -%> # https://hstspreload.org/ add_header Strict-Transport-Security "max-age=63072000; includeSubDomains; preload";