We are in need of enforcing HSTS in PRTG to allow only secure HSTS connections from web browsers to PRTG.

We are currently at this version of PRTG: 22.4.81.1532

Does this version of PRTG support HSTS, and if so what are the steps to implement HSTS?

I found a previous question in regards to this issue and the response back in 2020 was "Unfortunately, this is currently not possible.

We have decided not to implemented this in the current version of PRTG's web server anymore, but rather in its successor, which will still take some time to develop. I understand that this is causing intermediate issues. From what I can tell, it should be possible to configure this by using a reverse proxy."

Is there still no plans to implement HSTS enforcement for PRTG until the successor arrives?


Article Comments

Hi Ryan,

Thanks for the KB post. I am afraid the feature is still not available for now.

The status is still the same as what is replied here.


With kind regards,
Chan Siau Hen
Technical Support Team, Paessler AG.


Dec, 2022 - Permalink

Chan,

Thank you for the update. Is there any ETA or estimate for the successor to PRTG? Any information in regards to the succesor?


Dec, 2022 - Permalink

Hi Ryan,

We are working on a successor to the webserver an are making good progress there. Please bear with me that I cannot share any ETA for the release yet.

Thanks.


With kind regards,
Chan Siau Hen
Technical Support Team, Paessler AG


Dec, 2022 - Permalink

Is there any plan for Apache/Linux support for the successor, or still only windows based?


Dec, 2022 - Permalink

We are currently developing a new multi-platform-probe, which can also be installed on Linux. The Core Server itself still needs to be installed on windows only.


Dec, 2022 - Permalink