Difference between revisions of "HTTPS-only and HSTS"

From EPrints Documentation
Jump to: navigation, search
(Created page with "[Category:Authentication]] == Google Best Practices for HTTPS== That following are the best practice specified by Google (https://support.google.com/webmasters/answer/607354...")
(No difference)

Revision as of 15:41, 27 September 2017

[Category:Authentication]]

Google Best Practices for HTTPS

That following are the best practice specified by Google (https://support.google.com/webmasters/answer/6073543?hl=en&ref_topic=6001951)

  • HSTS Headers on HTTPS
  • No “Mixed Content” warnings/errors
  • Links point to HTTPS locations
  • 301 Redirects from HTTP to HTTPS