paint-brush
Glossary of Security Terms: HSTSby@mozilla

Glossary of Security Terms: HSTS

by Mozilla ContributorsSeptember 4th, 2020
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

HTTP Strict Transport Security lets a web site inform the browser that it should never load the site using HTTP and should automatically convert all attempts to use HTTPS requests instead. Mozilla (stylized as moz://a) is a free software community founded in 1998 by members of Netscape. It consists in one HTTP header, HTTPS-Strict-Transport-Security-Security, sent by the server with the resource resource. In other words, changing the protocol from HTTP to HTTPS in a URL works (and is more secure)

Company Mentioned

Mention Thumbnail
featured image - Glossary of Security Terms: HSTS
Mozilla Contributors HackerNoon profile picture

HTTP Strict Transport Security lets a web site inform the browser that it should never load the site using HTTP and should automatically convert all attempts to access the site using HTTP to HTTPS requests instead. It consists in one HTTP header,

Strict-Transport-Security
, sent by the server with the resource.

In other words, it tells the browser that changing the protocol from
HTTP to HTTPS in a URL  works (and is more secure) and asks the browser
to do it for every request.

Learn more

View Previous Terms: