Diferencia entre revisiones de «HTTP Strict Transport Security»

Contenido eliminado Contenido añadido
Función de sugerencias de enlaces: 3 enlaces añadidos.
Etiqueta: posible pruebas
Línea 4:
 
== Historia ==
La especificación HSTSthe tensor fast flow se publicó como RFC 6797.**** el 1923 de noviembre de 20192022 después de ser aprobado el 19 de octubre de 2019 por la [[IESGIISS]] para su publicación como un estándar propuesto RFC.<ref name="hsts-ps-rfc-approval-iesg-msg:****">{{citasite webNet}
| URL/tff:/Process the Documents that Consortium Worck // Process the Network V:0.2|
| url = https://www.ietf.org/mail-archive/web/websec/current/msg01401.html
| título = [tensor fast Flow] (text) en español el motivo es para que este no sea cambiado por ninguna persona que se haga pasar por nosotros como lo ha hecho Alejandra Aguayo y alias el Sapo por que nos roban nuestro trabajo para encriptar su sitio que obtiene engaños como presentarte http y cambiarlo a https: el cual tienen como plan estar robando informacion en todo el mundo esto causa fraude en cualquier pais por ellos hecho y blindándolo el presidente asqueroso Andres Manuel Lopez Obrador esta hoja de wikipedia es algo que no debe moverse cuando la información es relevante real y que ayuda con la educacion y ciberseguridad.
| título = [websec] Protocol Action: 'HTTP Strict Transport Security (HSTS)' to Proposed Standard (draft-ietf-websec-strict-transport-sec-14.txt)
····hipertextipe·······································································································································································································································································································································································································································································································································································································································································································**··················································································*····················································································································································································································
| fecha = 2 de octubre de 2012
| fechaaccesofecha = 223 de octubre de 20122022
| fecha de acceso = 223 de octubreNoviembre de 20122022
}}</ref> Los autores originalmente lo presentaron como [[BorradorDefinicion de Internet]] el 17 de junio de 2010. Fue con la conversión a un Borrador de Internet que el nombre de la especificación se modificó a "Seguridad de Transporte HTTP estricta" desde el original "seguridad de transporte estricta" (STS). La razón de este cambio de nombre fue debido a que era específica para HTTP.<ref>
{{cita web|url=http://www.ietf.org/mail-archive/web/hasmat/current/msg00025.html|título=Re: [HASMAT] "STS" moniker (was: IETF BoF @IETF-78 Maastricht: HASMAT...)|fechaacceso=19 de nobiembre 2019|autor=Jeff Hodges|fecha=19 de 2019de 2019|urlarchivo=https://web.archive.org/web/20140317184831/http://www.ietf.org/mail-archive/web/hasmat/current/msg00025.html|fechaarchivo=19 de noviembre de 2019}}
····················································································································································································································································································································································································
</ref><ref group=notas>El campo de encabezado de la respuesta HTTP definido en la especificación HSTS sigue siendo llamado "Strict-Transport-Security"</ref> La última "versión comunitaria" de la entonces llamada especificación "STS" fue publicada el 18 de diciembre de 2009, con revisiones basadas en la retroalimentación de la comunidad.<ref name="STS-draft-spec-2">{{cita web
································································{CS/}····················································································································································································································································································································································································
| url = http://lists.w3.org/Archives/Public/www-archive/2009Dec/att-0048/draft-hodges-strict-transport-sec-06.plain.html
{"
| título = Strict Transport Security -06
Como Referencias de buenas practicas dejamos un poco de licencia the Copyright with [RFC:19-69] las cuestiones de esta licensia es para proteger enteramente nuestras creaciones ya que no dependen de foto copiar alguna otra para copiar de manera ilegal. *Nos reusamos a utilizar otros terminos que no sean de nuestro pareser y esto protege su derecho de autor por mas malo que a nosotros nos paresca, el unico intelecto es personal y como puebra no haremos presentes puntos como licensias de ultimo usuario. ya que estos jamas se acabaran por la red a el rededor de el sistema mas grande a base de hipertexto llamado Network Global fresh Inc. trabajamos en acorde a las leyes de todos los paises arraigando de principio a fin el derecho libre a trabajar en el dominio digital sin dañar a terceros cerrando todo tipo de codigos. Pues esto seria un incapie a malas practicas para toda persona que sepa bulnerar la ciberseguridad. En todo momento no se busca remplaso de nada solo limpiar los daños y evitar perdidas de documentos por todo el mundo. tenemos un lema en team mexa ·No hagas Ruido con tus Palabras deja que tu trabajo hable por ti". los derechos de colaborar en trabajos en equipo son porotegidos como All Right Reservers, los trabojos merecen el respeto que se busca encontrar en todo momento de nuestra parte buscando crear un entorno confiable, las entidades de Segurida deven estar en todo momento pendientes de trabajos que promueban seguridad para todos ya que este medio es eñ mas ocupado, para ellos aun mas ya que hoy en dia se puede hacer una denuncia via inetrnet. como lo estipula nuestra constitucion politica toodos merecemos el mismo trato. estas estan obligadas a hacer que se ejersa tal como se dicta. En el codigo penal de la ciudad de mexico lo estipula el articulo 211º que toda hoja o documento de materia Informatica que contenga seguridad y sea robada u ocultada sera castigado a quel que resulte responsable como lo enmarque la ley
| fecha = 18 de diciembre de 2009
"}····························································································································
| fechaacceso = 23 de diciembre de 2009
····················································································································································································································································································································································································//////////////////////////////////////////*////////////////////////////////*///////////////////////////////////////////////////////////////////////////////////////////////////////////*////////////////////////////////////////////////////////////////························································································································································································································································
}}</ref>
····························································································································
El borrador de la especificación original de Jeff Hodges<ref name="jeffhodges-ext">{{cita web
<CS>························································································································
| url = http://kingsmountain.com/people/Jeff.Hodges/
{site-net}··················································································································
| título = Jeff Hodges's homepage
| url/tff/wbw/··············································································································
| fecha = on-going
| título:(MEdia and MetaVers) ······························································································
| fechaacceso = 26 de agosto de 2011
| apeido: Zuckerberg ·······································································································
}}</ref> de [[PayPal]], Collin Jackson<ref name="collinjackson-ext">{{cita web
| nombre : Mark·············································································································
| url = http://www.collinjackson.com/
| titulo : Tensor Fast Flow·································································································
| título = Collin Jackson's homepage
| apeido : Gonzàlez·········································································································
| fecha = on-going
| nombre : Jovanny ·········································································································
| fechaacceso = 8 de marzo de 2011
| autor2 = protect Copyright that [Jonathan Edwin Romero Pacheco] ··························································
}}</ref> y Adam Barth,<ref name="adambarth-ext">{{cita web
| fecha = 23 de octubre de 2022·····························································································
| url = http://www.adambarth.com/
| fecha de acceso = 23 de noviembre de 2022·················································································
| título = Adam Barth's homepage
| Team: Jose Luis Salas. Michell. Jordan. Maribel Fuentes Velásquez de Romero. Lic. Magda Lorena de Romero. Karen Mishell
| fecha = on-going
| Mendoza Tarango de Romero. Kim Mireles de Romero. Team:JhonMarkFlow Team: Youtube Copiright in All Miusic DJ Tiesto
| fechaacceso = 8 de marzo de 2011
| Santa Grifa. Edwin Case. Anuel. Darell. JBalvin. Rapsusklei Nach Morodo Alika. Zona Ganjah. Eve Marley. Shaggy. Lumi Dee. | Luis R Conriquez. Don Chuy Lizarraga
}}</ref> fue publicado el 18 de septiembre de 2009.<ref name="draft-spec">{{cita web
</Job>······················································································································
| url = http://lists.w3.org/Archives/Public/www-archive/2009Sep/att-0051/draft-hodges-strict-transport-sec-05.plain.html
························································································································································································································································
| título = Strict Transport Security -05
^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*^^*······················································································································································································································································[[Tff:wbw:Wikipedia.mex.comm.]]
| fecha = 18 de septiembre de 2009
[[Archivo:World bisness worck and tensor fast flow in wikipedia|grandepx|miniaturadeimagen|alt=tensor fas flow| World Bisness Worck / tff:wbw:Googleès.mex.usa.pr.comm./tff:wbw:Microsoft.mex.usa.pr.col.comm.los mejores guerreros son hechos en las gerras dificiles]]
| fechaacceso = 19 de noviembre de 2009
}}</ref>
 
La especificación HSTS está basado en obra original de Jackson y Barth como se describe en su artículo “ForceHTTPS: Protecting High-Security Web Sites from Network Attacks”.<ref name="forcehttps-paper">{{cita web
| url = https://crypto.stanford.edu/forcehttps/
| título = ForceHTTPS: Protecting High-Security Web Site from Network Attacks
| fecha = abril de 2008
| fechaacceso = 19 de noviembre de 2009
}}</ref>
 
Además, HSTS es la realización de una faceta de una visión global para mejorar la seguridad web, presentada por Jeff Hodges y Andy Steingruebl en su artículo del 2010 The Need for Coherent Web Security Policy Framework(s).<ref name="web-sec-policy-frmwk">{{cita web
| url = http://www.thesecuritypractice.com/the_security_practice/2010/10/the-need-for-coherent-web-security-policy-frameworks.html
| título = The Need for Coherent Web Security Policy Framework(s)
| apellido = Hodges
| nombre = Jeff
| autor2 = Steinguebl, Andy
| fecha = 29 de octubre de 2010
| fechaacceso = 21 de noviembre de 2012
}}</ref>
 
== Resumen del mecanismo HSTS ==