cmd/derper: increase HSTS cache lifetime to 2 years.

Fixes #3373.

Signed-off-by: David Anderson <danderson@tailscale.com>
This commit is contained in:
David Anderson 2021-11-22 11:45:37 -08:00 committed by Dave Anderson
parent 9feb483ad3
commit 9a217ec841

View File

@ -240,7 +240,7 @@ func main() {
// HSTS. Set it even though derper doesn't really serve
// anything of interest to browsers (and API clients like
// tailscale don't obey HSTS).
w.Header().Set("Strict-Transport-Security", "max-age=600; includeSubDomains")
w.Header().Set("Strict-Transport-Security", "max-age=63072000; includeSubDomains")
mux.ServeHTTP(w, r)
})
go func() {