summaryrefslogtreecommitdiffstats
path: root/doc/sphinx/arm/agent.rst
diff options
context:
space:
mode:
Diffstat (limited to 'doc/sphinx/arm/agent.rst')
-rw-r--r--doc/sphinx/arm/agent.rst9
1 files changed, 9 insertions, 0 deletions
diff --git a/doc/sphinx/arm/agent.rst b/doc/sphinx/arm/agent.rst
index f69696d1af..4862d46a92 100644
--- a/doc/sphinx/arm/agent.rst
+++ b/doc/sphinx/arm/agent.rst
@@ -56,6 +56,12 @@ The following example demonstrates the basic CA configuration.
"Control-agent": {
"http-host": "10.20.30.40",
"http-port": 8000,
+ "http-headers": [
+ {
+ "name": "Strict-Transport-Security",
+ "value": "max-age=31536000"
+ }
+ ],
"trust-anchor": "/path/to/the/ca-cert.pem",
"cert-file": "/path/to/the/agent-cert.pem",
"key-file": "/path/to/the/agent-key.pem",
@@ -114,6 +120,9 @@ different from the HA peer URLs, which are strictly
for internal HA traffic between the peers. User commands should
still be sent via the CA.
+Since Kea 1.7.5 the ``http-headers`` parameter specifies a list of
+extra HTTP headers to add to HTTP responses.
+
The ``trust-anchor``, ``cert-file``, ``key-file``, and ``cert-required``
parameters specify the TLS setup for HTTP, i.e. HTTPS. If these parameters
are not specified, HTTP is used. The TLS/HTTPS support in Kea is