From 00c4ecf38c303210ceb869cfc6d4c1f9f05b8050 Mon Sep 17 00:00:00 2001 From: Prathamesh Sonpatki Date: Thu, 25 Feb 2016 09:42:30 +0530 Subject: New applications will be generated with ssl_options to enable HSTS with subdomains - We will reuse config.ssl_options for setting the HSTS settings. --- .../generators/rails/app/templates/config/initializers/ssl_options.rb | 4 ++++ 1 file changed, 4 insertions(+) create mode 100644 railties/lib/rails/generators/rails/app/templates/config/initializers/ssl_options.rb diff --git a/railties/lib/rails/generators/rails/app/templates/config/initializers/ssl_options.rb b/railties/lib/rails/generators/rails/app/templates/config/initializers/ssl_options.rb new file mode 100644 index 0000000000..1775dea1e7 --- /dev/null +++ b/railties/lib/rails/generators/rails/app/templates/config/initializers/ssl_options.rb @@ -0,0 +1,4 @@ +# Be sure to restart your server when you modify this file. + +# Configure SSL options to enable HSTS with subdomains. +Rails.application.config.ssl_options = { hsts: { subdomains: true } } -- cgit v1.2.3