• Please be aware: Kaspersky Anti-Virus has been deprecated
    With the upgrade to Plesk Obsidian 18.0.64, "Kaspersky Anti-Virus for Servers" will be automatically removed from the servers it is installed on. We recommend that you migrate to Sophos Anti-Virus for Servers.
  • The Horde webmail has been deprecated. Its complete removal is scheduled for April 2025. For details and recommended actions, see the Feature and Deprecation Plan.
  • We’re working on enhancing the Monitoring feature in Plesk, and we could really use your expertise! If you’re open to sharing your experiences with server and website monitoring or providing feedback, we’d love to have a one-hour online meeting with you.

Question Permanet SEO redirect to https

Dave W

Regular Pleskian
Greetings,

In creating a Service Plan we would like to give our clients the option of using the Permanent SEO-safe 301 redirect from HTTP to HTTPS option or not.

To enable this we need to set " Setup of potentially insecure web scripting options that override provider's policy" in the Plans permissions.

But as attached the comment references " it is recommended to deny this permission for better site isolation. "

What are the risks here?

plesk.JPG

Regards
Dave_W
 
Plesk provides an ability to force subscriptions to use specific server-wide site isolation settings and the option "Setup of potentially insecure web scripting options that override provider's policy" allows customers to override them. More details are provided on this documentation page:
Enhancing Security
 
Back
Top