HTTPS VIP is failing PCI compliance
A Virtual Service to load balance HTTPS traffic was created but it was failing PCI Compliance.
HTTPS Virtual Service but it is failing PCI Compliance. The scanner says that the HSTS is missing despite the Strict Transport Security Header to include Sub-domains being configured.
|Steps to Reproduce:|
|Error Message:||"HSTS is missing"|
|Cause:||HTST was missing as a response header.|