Tim Kadlec 1/4/2016

HSTS and Let's Encrypt

Read Original

This technical article explains HTTP Strict Transport Security (HSTS) and its relationship with Let's Encrypt certificates. It details the security vulnerability of HTTP-to-HTTPS redirects, how HSTS closes this gap by instructing browsers to always use HTTPS, and provides a practical example of implementing the HSTS header in a server configuration.

HSTS and Let's Encrypt

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser