Age | Commit message (Collapse) | Author |
|
Content-Security-Policy Permissions-Policy (not only on success)
|
|
|
|
|
|
enable preload unless _NO_HSTS_PRELOAD is set
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
variable _OCSP_RESPONSE, and provide cron script to prefetch files for _OCSP_RESPONSE
|
|
|
|
conf-available, and drop obsolete snippet conf.d/local-ssl.conf
|
|
vhosts
|
|
zzz_wrong.example.com
|
|
|
|
|
|
|
|
|
|
|
|
be TLS encrypted)
|
|
|
|
|
|
|
|
either are set then enable options SSLCertificateFile SSLCertificateKeyFile
|
|
|
|
|
|
|
|
|
|
config-available.
|
|
was done in the past was likely to avoid re-login on intranet pseudo-donaims which should be avoided in any case.
|
|
|
|
|
|
|
|
|
|
bad for Perfect Forward Secrecy).
|
|
|
|
|
|
|
|
|
|
|
|
private mailman archives.
|
|
|
|
|
|
|
|
|
|
|