Troy Hunt: The 6-Step "Happy Path" to HTTPS
Here are instructions on all the special headers and stuff to use to force HTTPS.
yesterday by mcherm
How's My SSL?
Check out the sections below for information about the SSL/TLS client you used to render this page.
yesterday by ahall
HSTS Preloading
HSTS is the great little response header that tells a browser to always use SSL/TLS to communicate with your site. It doesn't matter if the user, or a link they are clicking, specifies HTTP, HSTS will remove the ability for a compatible browser to use HTTP and will enforce the use of HTTPS. This still leaves a user vulnerable on their very first connection to a site though. HSTS preloading fixes that.
yesterday by liquidx
Troy Hunt: The 6-Step "Happy Path" to HTTPS
Epic guide to setting up HTTPS. He’s a big proponent of Cloudflare. He does have a point that a reverse proxy provides a lot of leverage.
security  ssl  web  webdev  sysadmin  webmaster  tutorial 
2 days ago by jefframnani
Command Line Elliptic Curve Operations - OpenSSLWiki
A PEM file is essentially just DER data encoded using base 64 encoding rules with a header and footer added.
2 days ago by kgoess
Does curl have a --no-check-certificate option like wget? - Unix & Linux Stack Exchange
Q: I am trying to make a curl request to one of our local development servers running a dev site with a self-signed SSL cert. I am using curl from the command line. [...]
A: [...] -k, --insecure (SSL) This option explicitly allows curl to perform "insecure" SSL connections and transfers. [...]
2 days ago by ezequiel
support enabling TLSv1.2 on Android 4.1-4.4. · Issue #2372 · square/okhttp
okhttp - An HTTP+HTTP/2 client for Android and Java applications.
2 days ago by janole

