Tim Kadlec 1/4/2016

HSTS and Let's Encrypt

Read Original

This technical article explains HTTP Strict Transport Security (HSTS) and its relationship with Let's Encrypt certificates. It details the security vulnerability of HTTP-to-HTTPS redirects, how HSTS closes this gap by instructing browsers to always use HTTPS, and provides a practical example of implementing the HSTS header in a server configuration.

HSTS and Let's Encrypt

Comments

No comments yet

Be the first to share your thoughts!

Browser Extension

Get instant access to AllDevBlogs from your browser

Top of the Week