From af407ff1f24855138bcd7d12e733fcbcca683afb Mon Sep 17 00:00:00 2001 From: codl Date: Mon, 28 Aug 2017 01:52:22 +0200 Subject: [PATCH] fix hsts header --- app.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/app.py b/app.py index 567ee4c..dbc08b8 100644 --- a/app.py +++ b/app.py @@ -85,7 +85,7 @@ def install_security_headers(resp): resp.headers.set('Content-Security-Policy', csp) if app.config.get('HTTPS'): - resp.headers.set('strict-transport-security', 'max-age: {}'.format(60*60*24*365)) + resp.headers.set('strict-transport-security', 'max-age={}'.format(60*60*24*365)) resp.headers.set('referrer-policy', 'no-referrer') resp.headers.set('x-content-type-options', 'nosniff')