diff --git a/static/directives/config/config-setup-tool.html b/static/directives/config/config-setup-tool.html index 7c2fa2e19..978be4c74 100644 --- a/static/directives/config/config-setup-tool.html +++ b/static/directives/config/config-setup-tool.html @@ -98,6 +98,11 @@ A valid SSL certificate and private key files are required to use this option. +
+ Enabling SSL also enables HTTP Strict Transport Security.
+ This prevents downgrade attacks and cookie theft, but browsers will reject all future insecure connections on this hostname. +
+ @@ -835,4 +840,4 @@ - \ No newline at end of file +
Certificate: