HSTSPolicyBypassList

List of names that will bypass the HSTS policy check

Supported on:

  • Chrome (Windows) since version 78

Description:

Setting the policy specifies a list of hostnames that bypass preloaded HSTS upgrades from http to https.

Only single-label hostnames are allowed in this policy, and this policy only applies to "static" HSTS-preloaded entries (for instance, "app", "new", "search", "play"). This policy does not prevent HSTS upgrades for servers that have "dynamically" requested HSTS upgrades using a Strict-Transport-Security response header.

Supplied hostnames must be canonicalized: Any IDNs must be converted to their A-label format, and all ASCII letters must be lowercase. This policy only applies to the specific single-label hostnames specified, not to subdomains of those names.

Supported features:

  • Applied to browser only after restart.
  • Applied at Samsung Browser profile level.

Data type:

List of strings

Windows registry location:

Software\Policies\Samsung\Internet\HSTSPolicyBypassList

Example value:

Software\Policies\Samsung\Internet\HSTSPolicyBypassList\1 = meet

More policies under Miscellaneous: