Yrxbw7sk3umzh9kgrhlt
SkillsCast

Demystifying HTTP security headers

13th July 2016 in London at CodeNode

There are 78 other SkillsCasts available from FullStack 2016 - the conference on JavaScript, Node & Internet of Things

This session was not filmed.

A wide range of security related HTTP headers are now starting to gain wider browser support, but a lot of them are not well known by developers. Using SSL is a good start for security, but you should also strive towards using the HTTP headers Strict-Transport-Security, Content-Security-Policy and Public-Key-Pins. In order to do that, you need to understand what they really mean. Using these best practices, you will get more value out of your SSL certificates and make your site more secure for your end-users.

YOU MAY ALSO LIKE:

Demystifying HTTP security headers

Niklas Lindblad

My name is Niklas Lindblad and I love technology in all its forms.

SkillsCast

This session was not filmed.

A wide range of security related HTTP headers are now starting to gain wider browser support, but a lot of them are not well known by developers. Using SSL is a good start for security, but you should also strive towards using the HTTP headers Strict-Transport-Security, Content-Security-Policy and Public-Key-Pins. In order to do that, you need to understand what they really mean. Using these best practices, you will get more value out of your SSL certificates and make your site more secure for your end-users.

YOU MAY ALSO LIKE:

About the Speaker

Demystifying HTTP security headers

Niklas Lindblad

My name is Niklas Lindblad and I love technology in all its forms.

Photos