AnsweredAssumed Answered

No check for redirection from http to https

Question asked by Jan Kjetil Andersen on Nov 14, 2014
Latest reply on Apr 16, 2018 by Rob Moss

I just checked a website with the free ssltest application and got an A+ rating.

But the site has no redirection from http to https. If the users start on http they can continue there.

In my view that must be a major vulnerability which should have been detected by the scan

 

/Jan

Outcomes