HSTS

HSTS (HTTP Strict Transport Security)

botond published 2023. 01. 09., h - 06:35 time
HSTS (HTTP Strict Transport Security) is a policy mechanism that helps protect websites from man-in-the-middle attacks, such as protocol downgrade or cookie hijacking. It allows websites to require web browsers (and other web client applications) to automatically only use HTTPS connections, which implement strong encryption using SSL/TLS. HSTS is a 2012 IETF standard defined in RFC 6797.