HTTP Strict Transport Security (HSTS) protects against HTTP downgrade attacks by forcing browsers to only make secure connections with your domain. Adding NGINX HSTS is similar to and designed to work with SSL redirects. The HSTS header embeds the redirect code within the user’s web browser. The security HTTP header is supported by the most Read More >

Posted in NGINX on

Add HSTS in Zenphoto

The HTTP Strict Transport Security (HSTS) HTTP header ensures web browsers always load your image gallery with HTTPS. After you force SSL usage, follow below to add HSTS in Zenphoto. Warning: Once enabled, HSTS disallows the user from overriding an invalid or self-signed certificate message. Your website will be inaccessible without a valid SSL. Add Read More >

Posted in Website on

Force HSTS using .htaccess

HSTS (HTTP Strict Transport Security) protects users from cookie hijacking and protocol downgrade attacks by forcing browsers to request HTTPS pages from your domain. HSTS is similar to a 301 redirect from HTTP to HTTPS but at the browser level. There may be a specific HSTS configuration appropriate for your website. The following are less Read More >

Posted in Website on

10 Tips to Improve Magento Security

It is important to stay on top of Magento security practices to protect your website and customer data against cyber intrusions. Below we’ll cover some tips for hardening your Magento website and web server. Initial Setup Create an Unique Admin Panel URL Install an SSL Certificate Hardening Magento Security Magento Security Extensions and Backups Magento Read More >

Posted in Magento on

Drupal 9

Drupal 9 Education Channel Drupal 9 is a great content management system for those wanting a powerful and secure website. Follow the articles below to learn more about using the free, open-source website builder. Getting Started with Drupal 9 Here’s a short list of tasks you’ll need to know when building a new Drupal 9 Read More >

Force HTTPS on Joomla 4

One of the first things you should do when you install a new website is install an SSL certificate, free or paid, to encrypt traffic. Then, you must force HTTPS on Joomla 4 traffic. Neither are difficult tasks to complete and both instantly secure Joomla for you and your visitors.  cPanel server hosting includes AutoSSL, Read More >