Hi, can you made the forum redirect http access to https?
Currently I can access http://forums.duke4.net/ and login with http. It is advisable that every page be redirect to https version by the web server.
This to improve security and avoid accesses (and especially users logins) with plain http. Also improve Google Ranking.
Thanks.
Page 1 of 1
Missing http -> https redirect "https tls security"
#1 Posted 10 March 2019 - 01:32 PM
#3 Posted 13 March 2019 - 10:04 AM
Thanks for the reply! HSTS is a very welcome addition indeed! But actually no need to turn off http, but, as I said, just add a http -> https redirect on the web server so that even the first access uses https. Here is how to do it on your web server (apache): https://wiki.apache....tpd/RedirectSSL
This post has been edited by Zagro: 13 March 2019 - 10:06 AM
#4 Posted 13 March 2019 - 11:55 PM
You're missing the point that we want the forum to be accessible over HTTP, for users who cannot browse over HTTPS for some reason or another.
#5 Posted 15 March 2019 - 09:25 AM
Not sure which usercase is requiring http and not https, the Internet is moving to https and some features are disabled on http at every new browser release. But my point was also related to saving password in the browser, I didn't access the forum since awhile, and then noticed my password was not remembered. This is because I accessed in the past with a different protocol. This may also confuse some other users.
Thanks
Thanks
Share this topic:
Page 1 of 1