Skip to content

Commit

Permalink
hsts
Browse files Browse the repository at this point in the history
  • Loading branch information
wolverinn committed Jan 11, 2020
1 parent 0e58ab2 commit 2a00788
Showing 1 changed file with 3 additions and 0 deletions.
3 changes: 3 additions & 0 deletions Computer Network.md
Original file line number Diff line number Diff line change
Expand Up @@ -261,6 +261,9 @@ TCP粘包就是指发送方发送的若干包数据到达接收方时粘成了
<summary>展开</summary>

[你访问的网站是如何自动切换到 HTTPS 的?](https://www.sohu.com/a/136637876_487516)

一种是原始的302跳转,服务器把所有的HTTp流量跳转到HTTPS。但这样有一个漏洞,就是中间人可能在第一次访问站点的时候就劫持。
解决方法是引入HSTS机制,用户浏览器在访问站点的时候强制使用HTTPS。
</details>

##### HTTPS连接的时候,怎么确定收到的包是服务器发来的(中间人攻击)?
Expand Down

0 comments on commit 2a00788

Please sign in to comment.