SAP Knowledge Base Article - Preview

3359291 - Configuring HSTS with Web Dispatcher or ICM

Symptom

It is desired to implement HTTP Strict Transport Security(HSTS) in your Web Dispatcher or within your own backend servers such as your ICM Servers.

Depending on your release level, this may or may not support it. You may start by modifying the web dispatcher if you are unsure.

The minimum patch/Kernel level is mentioned in SAP Note 2042819 - ICM - HTTP Response Header Rewriting


Read more...

Environment

SAP NetWeaver ABAP Platform 

Product

SAP NetWeaver Application Server all versions

Keywords

HSTS, HTTP Strict Transport Security, Web Dispatcher, redirect, RFC 6797, man-in-the-middle, icm/HTTP/strict_transport_security, sniff packets, intercept data, HSTS Missing From HTTPS Server (RFC 6797) , KBA , BC-CST-IC , Internet Communication Manager , BC-SEC-SSL , Secure Sockets Layer Protocol , BC-CST-WDP , Web Dispatcher , How To

About this page

This is a preview of a SAP Knowledge Base Article. Click more to access the full version on SAP for Me (Login required).

Search for additional results

Visit SAP Support Portal's SAP Notes and KBA Search.