What is HSTS?

VietMX Staff asked 3 years ago

HTTP Strict Transport Security (HSTS) is a web security policy mechanism that helps to protect websites against protocol downgrade attacks and cookie hijacking.

The HSTS Policy is communicated by the server to the user agent via an HTTPS response header field named Strict-Transport-Security. Once a supported browser receives this header that browser will prevent any communications from being sent over HTTP to the specified domain and will instead send all communications over HTTPS.