Security Headers

Notes about Security Headers

Origin Header Spoofing

X-Forwarded-For
X-Forwarded-Host
X-Host
X-Originating-IP
X-Remote-IP
X-Client-IP
X-Remote-Addr

OWASP Security Headers Project

Good guide about proper implementation of HTTP headers.

Tools to Test Security Headers

Tool to test security headers

Last updated