User:Apking/Web Security Guidelines: Difference between revisions

more typos
(bulleting)
(more typos)
Line 107: Line 107:


* [https://noncombatant.org/2015/05/01/about-http-public-key-pinning/ About Public Key Pinning]
* [https://noncombatant.org/2015/05/01/about-http-public-key-pinning/ About Public Key Pinning]
* [https://scotthelme.co.uk/hpkp-toolset/ The HPKP Toolset], helpful tools for generating key pins
* [https://scotthelme.co.uk/hpkp-toolset/ The HPKP Toolset] - helpful tools for generating key pins




Line 190: Line 190:
== See Also ==
== See Also ==


[https://tools.ietf.org/html/rfc6265 RFC 6265 (HTTP Cookies)]
* [https://tools.ietf.org/html/rfc6265 RFC 6265 (HTTP Cookies)]
[https://tools.ietf.org/html/draft-west-cookie-prefixes Cookie Prefixes (Experimental)]
* [https://tools.ietf.org/html/draft-west-cookie-prefixes HTTP Cookie Prefixes (Experimental)]




Line 401: Line 401:
| [[#HTTPS|<span style="color: black;">HTTPS</span>]]
| [[#HTTPS|<span style="color: black;">HTTPS</span>]]
| Mandatory
| Mandatory
| Use the most secure TLS configuration for your userbase
| Use the most secure TLS configuration for your user base
|- style="background-color: #E99696;"
|- style="background-color: #E99696;"
| style="padding-left: 1.5em;" | [[#HTTP Public Key Pinning|<span style="color: black;">Public Key Pinning</span>]]
| style="padding-left: 1.5em;" | [[#HTTP Public Key Pinning|<span style="color: black;">Public Key Pinning</span>]]
Anti-spam team, Confirmed users
99

edits