Posted in Information Technology, Security

HTTPS Cheat Sheet


Perfect Forward Secrecy (PFS)

Public Key Pinning (HPKP)

  • HPKP – HTTP Public Key Pinning: Headers look like
    Public-Key-Pins pin-<algorithm>="<hash>"; pin-<algorithm>="<hash>"; max-age=<age>[; includeSubdomains]
  • Creating SPKI fingerprints
    openssl x509 -noout -in certificate.pem -pubkey | \
    openssl asn1parse -noout -inform pem -out public.key;
    openssl dgst -sha256 -binary public.key | openssl enc -base64


HTTPS Testing

SSL Performance


