Difference between revisions of "HTTP Strict Transport Security (HSTS)"
Jump to navigation
Jump to search
Tags: Mobile web edit, Mobile edit |
|||
Line 1: | Line 1: | ||
[[wikipedia:HTTP Strict Transport Security]] (HSTS) is a web security '''policy mechanism''' that helps to protect websites against protocol downgrade attacks and [[cookie hijacking]]. | [[wikipedia:HTTP Strict Transport Security]] (HSTS) is a web security '''policy mechanism''' that helps to protect websites against protocol downgrade attacks and [[cookie hijacking]]. | ||
+ | |||
+ | <code>Strict-Transport-Security: max-age=31536000; includeSubDomains</code> | ||
Revision as of 05:47, 14 April 2020
wikipedia:HTTP Strict Transport Security (HSTS) is a web security policy mechanism that helps to protect websites against protocol downgrade attacks and cookie hijacking.
Strict-Transport-Security: max-age=31536000; includeSubDomains
See also
- HTTP, HTTP client, HTTP/1.1, HTTP/2, HTTP/3, HTTPS, HSTS CSR, TLS, SSL,
openSSL
, WebSockets, WebRTC,ssl_certificate
QUIC, HPKP, CT, List of HTTP status codes, URL redirection, Content-type:, Webhook, HTTP headers,--insecure
, Axios HTTP client, HTTP cookies, HTTP ETag, Hypertext Transfer Protocol -- HTTP/1.1
Advertising: