Issues
- 0
Increase the default HSTS max-age to 2 years
#106 opened by toncid - 1
- 1
Middleware use vs. insert_before
#103 opened by toncid - 5
- 0
- 2
Is there a changelog?
#95 opened by joelpresence - 1
HSTS Implementation
#92 opened by 23ranjan - 6
Does not set session cookie as secure
#91 opened by vipulvkp - 2
HSTS and secure cookies w/o redirect?
#89 opened by n3bulous - 2
- 2
ERR_CONNECTION_REFUSED
#85 opened by Antonio-usa2015 - 7
How to handle URI::InvalidURIError?
#78 opened by PikachuEXE - 3
Issue with IE only... strict true not working
#80 opened by jgrannas - 5
Infinite redirects behind AWS ELB
#82 opened by gnitnuj - 3
Issue with Redirects
#81 opened by irmiller22 - 5
POST requests
#79 opened by florrain - 5
Cookie session state shared across http and https without disabling force_secure_cookies
#58 opened by kbaum - 7
:strict option + AJAX requests
#36 opened by blelump - 18
Is there a way to combine only_hosts & only?
#62 opened by akashkamboj - 0
- 2
Release new version! <3
#73 opened by rwojsznis - 2
Support for ruby 2.0 and Rails 4
#72 opened by oveddan - 3
Running code before redirect not working
#70 opened by abhasg - 3
combine strict and non strict behaviour
#69 opened by mojovski - 6
- 6
- 11
- 1
Enforcing won't preserve HTTP methods
#65 opened by hammady - 6
Proper Nginx Config
#26 opened - 9
SSL-only, HTTP-only, and mixed
#39 opened by flivni - 2
New rubygems release?
#60 opened by micahwedemeyer - 6
force internationalization
#54 opened by hyperrjas - 0
Allow proc to be called before forcing a redirect
#56 opened by oveddan - 11
:mixed doesn't allow insecure GET
#21 opened by eostrom - 0
Add environment constraints
#51 opened by wyattisimo - 2
Secure cookie flag forced
#20 opened by mig-hub - 6
- 1
@scheme leak across requests
#48 opened by robd - 5
SSL :ignore ignored for routable addresses, but works for static addresses
#43 opened by mattheworiordan - 0
SSL-only, HTTP-only, and mixed
#38 opened by flivni - 3
Working on Heroku?
#35 opened by iesta - 4
Redirect not working
#34 opened by hallmatt - 4
strict and HSTS are incompatible
#8 opened by dacort - 2
- 3
Apache 2 config?
#30 opened by cheeyeo - 2
hsts => true doesn't work
#28 opened by nurey - 3
- 3
Can't load Rack::SslEnforcer in Rails 2.3.11 app
#17 opened by minter - 3
SSL URLs not being generated for mailers
#15 opened by uberllama - 1
rack-ssl-enforcer.rb
#9 opened by thibaudgg