Jazz Forum Welcome to the Jazz Community Forum Connect and collaborate with IBM Engineering experts and users

HSTS Jazz and Tomcat

rtc clm 6.0.2
tomcat 8

How do you get the 'authenticated' url to have the HSTS header? i did enable all tomcat hsts via apache guidelines in the conf xmls.


the url https://host.com/ccm/secure/authenticated/identity?redirectPath=%2Fccm%2Fweb  doesn't have the hsts header and all subsequent urls in /ccm, /jts, /rm, etc do.

Missing

Present


0 votes



One answer

Permanent link

changes were made strictly to tomcat web.xml to fix this.


added 

<dispatcher>INCLUDE</dispatcher>
<dispatcher>FORWARD</dispatcher> <dispatcher>REQUEST</dispatcher>

0 votes

Your answer

Register or log in to post your answer.

Dashboards and work items are no longer publicly available, so some links may be invalid. We now provide similar information through other means. Learn more here.

Search context
Follow this question

By Email: 

Once you sign in you will be able to subscribe for any updates here.

By RSS:

Answers
Answers and Comments
Question details
× 7,495
× 6,121

Question asked: Jun 18 '19, 6:03 p.m.

Question was seen: 2,740 times

Last updated: Dec 16 '19, 5:38 p.m.

Confirmation Cancel Confirm