Hacker News new | ask | show | jobs
by thijsc 4625 days ago
You can set config.force_ssl = true to easily enable secure session cookies and strict transport security amongst other things.