cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
18712
Views
90
Helpful
16
Replies
gchevalley
Beginner

HTTP Strict Transport Security on ASA

Our PCI scan vendor has recently began flagging the outside interfaces of all of our firewalls that have AnyConnect enabled on them.  Does anyone know if there is a way to enable HSTS on AnyConnect / WebVPN or the outside interface?

16 REPLIES 16
vse
Beginner
Beginner

webvpn
 enable outside
 hsts
  enable
  max-age 31536000
  include-sub-domains
  no preload

gunnar.gud
Beginner

Is there any way to prevent users from bypassing security issues (does HSTS work on Anyconnect itself?), such as cert errors or tls errors?

Create
Recognize Your Peers
Content for Community-Ad