Skip to content

Commit 2244b11

Browse files
authored
Merge pull request #1064 from SISheogorath/fix/hstsSeconds
Fix wrong maxAgeSeconds multiplication
2 parents 2d241b9 + 0aa3116 commit 2244b11

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

app.js

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -83,7 +83,7 @@ app.use(compression())
8383
// use hsts to tell https users stick to this
8484
if (config.hsts.enable) {
8585
app.use(helmet.hsts({
86-
maxAge: config.hsts.maxAgeSeconds * 1000,
86+
maxAge: config.hsts.maxAgeSeconds,
8787
includeSubdomains: config.hsts.includeSubdomains,
8888
preload: config.hsts.preload
8989
}))

lib/config/default.js

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -13,7 +13,7 @@ module.exports = {
1313
useSSL: false,
1414
hsts: {
1515
enable: true,
16-
maxAgeSeconds: 31536000,
16+
maxAgeSeconds: 60 * 60 * 24 * 365,
1717
includeSubdomains: true,
1818
preload: true
1919
},

0 commit comments

Comments
 (0)