Securely redirect http to https - Ideas - Salesforce Trailblazer Community
Trailblazer Community

All Ideas

Idea Details

Post an Idea
This idea has been delivered and can no longer be voted or commented on. If you’d like to add to this conversation, please post a new idea.
40  Points voting closed
Delivered in Summer 20
Delivered in Summer 20

Securely redirect http to https

Marketing & Content Tools

www.securityscorecard.io shows a security issue with our web properties because of an insecure redirect caused by pardot.
We have set up a tracking domian with out own url, which has http and https. securityscorecard.io complains that when going to http://go.ourcompany.com, it is redirecting right away to the target we've set up, e.g. https://www.ourcompany.com . This is not as secure as can be (according to them, this is more vulnerable to dns spoofing), and should first redirect to https://go.ourcompany.com . So to be clear: 
What pardot does now, which gives us a bad score:
http://go.ourcompany.com -(redirects to)-> https://www.ourcompany.com
and it should be:
http://go.ourcompany.com -(redirects to)-> https://go.ourcompany.com -(redirects to)-> https://www.ourcompany.com

Please add an option for this, or better yet, just do the right thing for all redirects.

· Flag

Latest Comment from Salesforce

  • Christopher Cornett - 4 months ago

    Pardot has enabled an option to allow customers to force HTTPs redirects to ensure all their Pardot traffic is secure. The feature was delivered in the Summer '20 release. To learn more, please see: https://releasenotes.docs.salesforce.com/en-us/summer20/release-notes/rn_sales_pardot_force_https.htm.

    Knowledge Article: https://help.salesforce.com/articleView?id=000352902&type=1&language=en_US&mode=1
  • Upvotes
  • Downvotes

Ideas

Apps

from AppExchange

Questions

No results found.

Help us to keep IdeaExchange clean by pointing out overlapping ideas. We'll investigate your suggestion and merge the ideas if it makes sense.



 

 

Thanks for your merge suggestion. We will review it shortly and merge the ideas if applicable.

Salesforce takes abuse situations very seriously. Examples of abuse include but are not limited to posting of offensive language or fraudulent statements. To help us process your request as quickly as possible, please fill out the form below describing the situation. For privacy and security reasons, the final outcome of an abuse case may not be revealed to the person who reported it.


 

Thank you for your feedback. We take abuse seriously and will investigate this issue and take appropriate action.