# HTTP strict Transport Security

**URL:** <https://discuss.elastic.co/t/http-strict-transport-security/172591>\
**Category:** Kibana\
**Created:** [March 15, 2019, 6:03pm UTC](https://discuss.elastic.co/t/http-strict-transport-security/172591 "2019-03-15T18:03:02Z")\
**Posts on this page:** 1\
**Showing post:** 2

<div class="post-metadata">

**Author:** ![Marius\_Dragomir](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/marius_dragomir/32/42087_2.png) [@Marius\_Dragomir](https://discuss.elastic.co/u/Marius_Dragomir)\
**Post date:** [March 22, 2019, 11:44am UTC](https://discuss.elastic.co/t/http-strict-transport-security/172591/2 "2019-03-22T11:44:18Z")

</div>

Hello,  
You can try and achieve this by using the `server.customResponseHeaders` [https://www.elastic.co/guide/en/kibana/current/settings.html](https://www.elastic.co/guide/en/kibana/current/settings.html) and specifying your own custom one.  
The format for the setting is like this: [Format of kibana server.customResponseHeaders](https://discuss.elastic.co/t/format-of-kibana-server-customresponseheaders/108000)

---

_[View the full topic](https://discuss.elastic.co/t/http-strict-transport-security/172591)._
