Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WAF - Web Server protection and HSTS

Hi

I have a new ADFS 2019 system behind a WAF on XG. The external tests keep telling me it has Strict Transport Security (HSTS) off. 

Is there a setting on the XG that affects this when putting a local server behind the WAF or have I missed something on the local server?

I know there is TLS options for WAF on XG that I have changed and it does affect this whenr unning external tests. Wondering if HSTS is similar



This thread was automatically locked due to age.