Forum Discussion
Configure Public Key Pinning (HPKP) header in LTM 11.6
Has anyone configured the HTTP Public-Key-Pins response header (rfc 7469) in LTM 11.6?
3 Replies
- Chris_Grant
Employee
This is not something that is natively supported in 11.6.0, though there is a tracking ID to add it to a future release. You can open a support case and ask to have your case linked against ID 517825. This functionality won't likely find it's way backwards to 11.6.0, though.
- awilhelm
Employee
You can insert headers in responses by calling
in theHTTP::header insert
event in an iRule. See theHTTP_RESPONSE
documentation for more info: https://devcentral.f5.com/wiki/iRules.HTTP__header.ashxHTTP::headerDue to the nature of the information required in RFC 7469, you would unfortunately need to prepare a static header to be inserted and update it as needed when certificates potentially change.
- BAMcHenryRet. EmployeeA bit more detail on how to insert HPKP headers: https://devcentral.f5.com/s/articles/20-lines-or-less-security-headers-18367
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com